Two-Project Series

Secure Docker-Based API Services you own this product

prerequisites
basics of Ubuntu as host system • basic Ubuntu commands • basics of Git • basic debugging
skills learned
Docker security best practices • identifying vulnerabilities • remediating vulnerabilities • hardening Docker instances running API services using global best practices and testing them for functionality and security
Sashank Dara
2 weeks · 4-6 hours per week average · BEGINNER

pro $24.99 per month

  • access to all Manning books, MEAPs, liveVideos, liveProjects, and audiobooks!
  • choose one free eBook per month to keep
  • exclusive 50% discount on all purchases

lite $19.99 per month

  • access to all Manning books, including MEAPs!

team

5, 10 or 20 seats+ for your team - learn more


In this liveProject series, the online gift store Zozo is experiencing unprecedented web traffic during the holiday shopping season. As Zozo’s DevSecOps engineer, your goal is to keep the site operating efficiently and securely. You need to meet demand by scaling the API server using Docker containers while protecting sensitive customer data.

These projects are designed for learning purposes and are not complete, production-ready applications or solutions.

here's what's included

Project 1 Secure API Docker Images

As the DevSecOps engineer for Zozo, an online gift store, you’ll write Docker files and build secure Docker images that keep Zozo’s customers happy and your manager even happier. Along the way, you’ll spot potential security vulnerabilities using several open source tools, and ward against cyberattacks with digital signatures.

Project 2 Secure API Docker Instances

Take the next step in securing Zozo’s online store by securing the environments running the Docker services—the host machine, Docker daemon, and container—at run time, continuing to work with open-source e-commerce project Shopizer, and hardening the host and Docker instances using global best practices.

book resources

When you start each of the projects in this series, you'll get full access to the following book for 90 days.

choose your plan

team

monthly
annual
$49.99
$499.99
only $41.67 per month
  • five seats for your team
  • access to all Manning books, MEAPs, liveVideos, liveProjects, and audiobooks!
  • choose another free product every time you renew
  • choose twelve free products per year
  • exclusive 50% discount on all purchases
  • Secure Docker-Based API Services project for free

project author

Sashank Dara

Sashank Dara received his PhD in cybersecurity from IIIT-Bangalore in the area of applied cryptography and threat intelligence. He’s an expert cybersecurity technologist with more than 17 years of experience in the field, including as a consultant advisor for Manipal Global Education Services’ cybersecurity programs and as a security technology and strategy advisor for security startups including Appknox, Haltdos, and SecurityJourney.com. He remains a trusted information security consultant and advisor for top companies in EdTech, IT/ITes, academia, and real estate. He’s the co-inventor of 5 U.S. patents (and 3 IETF drafts) in the areas of cloud, SDN, and NFV security, and he’s published more than a dozen research papers at IEEE, LNCS conferences in the areas of cloud security, privacy, cryptography, and threat intelligence. A prolific speaker at security conferences and invited talks, Dara is currently the CTO and co-founder of Seconize, an award-winning cybersecurity startup pioneering a cyber risk and compliance management SaaS product suite.

Prerequisites

These liveProjects are for DevSecOps engineers who want to uplevel their Docker security expertise and gain hands-on experience that helps them prevent cyberattacks on Docker-based API services. To begin these liveProjects you will need to be familiar with the following:


TOOLS
  • Ubuntu
  • Shopizer
  • Git
    • TECHNIQUES
      • Basic debugging
      • Basic Ubuntu commands
      • Basics of Git

you will learn

In this liveProject series, you’ll gain skills for securely building Docker-based API services and preventing cyberattacks.


  • Setting up the environment to run open source e-commerce software in a Docker container
  • Identifying the security issues in Docker files and images using open source tools
  • Remediating security issues
  • Verifying remediation
  • Testing API services for functionality and security
  • Digital signing
  • Global best practices

features

Self-paced
You choose the schedule and decide how much time to invest as you build your project.
Project roadmap
Each project is divided into several achievable steps.
Get Help
While within the liveProject platform, get help from other participants and our expert mentors.
Compare with others
For each step, compare your deliverable to the solutions by the author and other participants.
book resources
Get full access to select books for 90 days. Permanent access to excerpts from Manning products are also included, as well as references to other resources.