Designing Secure Systems
Stop bolting security on: design it in from the first diagram.
Tuition
$399
Advanced
Level
4
Modules
8
Lessons
4
Graded quizzes
2
Assignments
10 hours
Estimated time
What you will be able to do
- You will be able to build an enterprise threat model of trust boundaries, data flows, and high-value assets, then rank the threats most worth designing against.
- You will be able to design segmented network and cloud architectures that assume breach and keep one compromise from spreading across the enterprise.
- You will be able to architect authentication, authorization, and privileged access that hold up when attackers already have a foothold.
- You will be able to choose the right cryptographic pattern for a given problem, from encryption and key management to certificate and public key infrastructure design.
- You will be able to select and place security controls using defense in depth, and justify every control against a specific threat.
- You will be able to produce clear architecture diagrams and decision records that engineers and auditors can actually follow.
- You will be able to run a secure design review that surfaces the weak points in an architecture before anything is built.
What is inside
4 modules, 8 lessons. Each module ends in a graded quiz and most carry an assignment.
- 01
Enterprise Threat Modeling
Good architecture starts by naming what can go wrong. In this module you learn to model an entire enterprise system: its trust boundaries, its data flows, and the assets worth protecting most. Using structured methods such as STRIDE (spoofing, tampering, repudiation, information disclosure, denial of service, and elevation of privilege), you turn a vague system into a ranked list of threats that drives every later design choice.
2 lessons · 5 quiz questions
- 02
Network and Cloud Architecture
Most breaches spread because the network let them. In this module you design segmented networks and cloud environments that assume breach and shrink the blast radius of any single compromise. You apply zero trust principles from the National Institute of Standards and Technology (NIST) Special Publication 800-207, lay out cloud landing zones, and decide where trust boundaries belong so one foothold does not become a company-wide incident.
2 lessons · 5 quiz questions · assignment
- 03
Identity and Access Architecture
In modern systems, identity is the real perimeter. This module covers how to design authentication, authorization, and privileged access that stay strong even when attackers are already inside. You will strengthen sign-in with multi-factor authentication (MFA), weigh single sign-on (SSO) and federation against the risks they carry, and design least-privilege access that scales past a spreadsheet.
2 lessons · 5 quiz questions
- 04
Cryptographic and Control Patterns
You assemble the building blocks that make a design trustworthy: the cryptographic and control patterns an architect reaches for. You will learn to match each pattern to the problem in front of you, from encryption and key management to layered controls that trace back to real threats. The module closes with the secure design review, so you can pressure-test any architecture, including your own, before it ships.
2 lessons · 5 quiz questions · assignment