Curriculum · Phase 6 · Module 6.5
Bring together everything from this phase. You are handed a fictional company's API surface — endpoints, an OpenAPI excerpt, and its current auth setup — and must produce a single API security review: identify the authentication and authorization model and its gaps, find the OWASP Top 10 exposures, specify the gateway, rate-limiting, and key-lifecycle controls, and list the evidence artifacts that would prove each control to an auditor.
60 min
·
1 lessons
·
+75 pts