Important DevSecOps Tools
Learn DevSecOps essentials: SAST and DAST tools like Bandit, Clean Code, LGTM, OWASP ZAP, and Nikto, plus dependency analysis and IaC security tools. Explore secrets and vulnerability management.
Skill level
IntermediateTime to complete
Approx. 1 hourCertificate of completion
Yes
About this course
DevSecOps stands for development, security, and operations, and is used to inject security earlier in the software development life cycle (SDLC). In this course, you will explore the various categories of DevSecOps, starting with static analysis security testing (SAST) and dynamic analysis security testing (DAST). Next, you will discover common SAST and DAST DevSecOps tools including Bandit, Clean Code, looks good to me (LGTM), OWASP Zed Attack Proxy (ZAP), and Nikto, and examine dependency analysis and related dependency analysis tools. Then, you will investigate infrastructure as code (IaC) security and the leading IaC security tools, including Anchore, Clair, Dagda, OpenSCAP, dockscan, and InSpec. Finally, you will find out how secrets management is used to manage passwords, keys, application programming interfaces (APIs), and tokens, and you will identify the benefits of vulnerability management and assessment practices.
Learning objectives
- Discover the key concepts covered in this course
- Provide an overview of sast, or static analysis
- Describe dast, or dynamic analysis

How it works
Expert-led videos
In this course, you'll watch videos created by industry-leading experts for some of the biggest tech companies in the world. They'll cover key concepts, go through sample applications, prepare you for industry certifications, and more. Watch on any device — whenever and wherever you want — to learn at your own pace. Reviews from learners
- Very well put together as usual. I learn so much from each experience with Codecademy. I can't explain how satisfied I am with this institution.David WVerified Learner
- Everything Codecademy offers is useful for all software developers.Fidan MVerified Learner
- I thought that I would never be able to learn to code but Codecademy has made it very easy. I just love it!Adyan HVerified Learner
Our learners work at
How to Break Into Cybersecurity Without a Degree

This past year, the job market saw 514,359 listings from public and private employers, all hunting for cybersecurity specialists or tech talent with serious cybersecurity skills.
As tech continues to transform our lives, more people are needed to defend these technologies and keep up with their advancements, says Okey Obudulu, Chief Information Security Officer (CISO) for Skillsoft, the company that Codecademy is proud to be part of. “The blatant attacks on companies’ networks have led more and more companies to really get serious around the demand for cybersecurity professionals,” he says.
Join over 50 million learners and start Important DevSecOps Tools today!
StartLooking for something else?
Related courses and paths
- Explore DevSecOps methodology: Discover frameworks like CALMs and Three Ways, integration of security, migration strategies from DevOps to DevSecOps, and DevSecOps phases and decentralization.
- Intermediate.1 hour
- Learn DevSecOps Fundamentals: Explore the roles of DevOps and DevSecOps in IT. Understand benefits, requirements, and challenges. Discover industry applications and team preparation steps.
- Intermediate.1 hour
- Learn DevSecOps on-premises: Compare on-premises, cloud, and hybrid solutions, understand DevSecOps team roles, and focus on the three pillars of DevSecOps.
- Intermediate.2 hours
Browse more topics
- Cybersecurity316,183 learners enrolled
- Code foundations8,553,970 learners enrolled
- Computer science7,048,636 learners enrolled
- Web development5,741,810 learners enrolled
- Data science5,342,170 learners enrolled
- Python4,321,988 learners enrolled
- For business4,120,649 learners enrolled
- Data analytics3,225,381 learners enrolled
- JavaScript3,218,452 learners enrolled
Unlock additional features with a paid plan
Portfolio projects
Create professional projects you can share with recruiters to showcase your skills and experience.Job-readiness checker
Evaluate how well you meet the requirements for any job description based on your skills and experience.Certificate of completion
Earn a document you can share with your network to prove that you’ve completed this course.
