Designing Secure Authentication and Authorisation Systems for Applications

A working programme in authentication and authorisation systems for managers who have to deliver with existing resources.

📍 Cairo🗓️ 5 training days📚 4 modules🎓 Accredited certificate
5intensive training days
4scientific modules
8training sessions
32detailed points

Course Overview

The documentation for authentication and authorisation systems is accurate only until the next release. Availability targets for authorisation systems are commercial commitments, whatever the engineering team calls them. The programme uses small-group work so that each participant's treatment of this aspect of technology and systems delivery is examined, not just described. Participants develop a defensible line of reasoning for the choices they make about authentication and authorisation systems. Teams frequently over-invest in documenting the technology and systems delivery discipline and under-invest in testing it. Mature organisations treat authorisation systems as a standing capability rather than a project that finishes. The programme converts authentication and authorisation systems from an area of general awareness into a set of repeatable practices. The material serves both public bodies and commercial organisations dealing with authorisation systems. Participants leave with a plan for this aspect of technology and systems delivery sized to what their organisation can realistically absorb.

Expected Learning Outcomes

01

Document authentication and authorisation systems to the level a new engineer could operate it.

02

Secure the software supply chain and dependencies within authorisation systems.

03

Control technical debt in authentication and authorisation systems deliberately rather than by neglect.

04

Diagnose whether a problem in authorisation systems is one of design, resourcing or discipline.

05

Design a training and briefing approach that sustains competence in authentication and authorisation systems.

06

Document decisions about authorisation systems in a form that remains useful after the people change.

07

Build incident response for authentication and authorisation systems with defined severity and escalation.

Who Should Attend

01

Team leaders and supervisors who put authentication and authorisation systems into practice day to day.

02

Solution architects designing authorisation systems.

03

Infrastructure and platform engineers operating authentication and authorisation systems.

04

Network and communications engineers supporting authorisation systems.

05

Experienced practitioners formalising an approach to authentication and authorisation systems that has grown up informally.

06

Service desk and support leads handling incidents in authorisation systems.

Course Modules

01

Authentication and authorisation systems: documentation, support and handover

2 sessions · 8 points

Session 1Proving the backup of authentication and authorisation systems by restoring it

  • Assess the exit route from any cloud or vendor dependency in authentication and authorisation systems.
  • Estimate the resource authorisation systems requires to run as designed.
  • Check that authentication and authorisation systems still works when volumes rise unexpectedly.
  • Set out the decisions in authorisation systems that require sign-off and by whom.

Session 2Monitoring authorisation systems from the user's point of view

  • Define incident severity levels for authentication and authorisation systems and the response each triggers.
  • Prepare the summary of authorisation systems that senior management will read.
  • Set delivery and reliability indicators for authentication and authorisation systems the team trusts.
  • Run a load test on authorisation systems at expected peak plus a margin.
02

Authorisation systems: architecture and designing for failure

2 sessions · 8 points

Session 1Retiring the legacy part of authorisation systems

  • Record the technical debt in authentication and authorisation systems and schedule repayment.
  • Restore a backup of authorisation systems in a test environment and time it.
  • Build the competence framework that supports authentication and authorisation systems.
  • Collect evidence on the present handling of authorisation systems before proposing changes.

Session 2Testing authorisation systems before relying on it

  • Review access rights on authentication and authorisation systems and remove what is no longer needed.
  • Configure alerting on authorisation systems that reflects what users experience.
  • Confirm data retention and deletion rules applied within authentication and authorisation systems.
  • Distinguish symptoms from causes when authorisation systems underperforms.
03

Authorisation systems: incident response and severity

2 sessions · 8 points

Session 1Getting other functions to support authorisation systems

  • Set escalation thresholds for authentication and authorisation systems that work out of hours.
  • Measure current load on authorisation systems and project it forward twelve months.
  • Apply change control to authentication and authorisation systems including emergency changes.
  • Define acceptance criteria for authorisation systems in advance.

Session 2Comparing authentication and authorisation systems with recognised practice

  • Establish the boundary of authentication and authorisation systems and record what sits outside it.
  • Confirm the support model and escalation path for authorisation systems.
  • Confirm every release of authentication and authorisation systems can be rolled back within a defined time.
  • Close out actions on authorisation systems rather than leaving them open indefinitely.
04

Authorisation systems: backup, recovery and continuity

2 sessions · 8 points

Session 1Documenting authorisation systems so someone else can operate it

  • Test the failover for authentication and authorisation systems rather than assuming it works.
  • Establish what evidence demonstrates authorisation systems is under control.
  • Inventory third-party dependencies inside authentication and authorisation systems and their update status.
  • Agree the smallest change to authorisation systems that would be visibly useful.

Session 2The change to authorisation systems that caused the last outage

  • Set out how exceptions to authentication and authorisation systems are requested and approved.
  • Define the trigger that would require authorisation systems to be redesigned.
  • Identify the single points of failure in authentication and authorisation systems.
  • Identify the data already collected that bears on authorisation systems.

Choose the package that suits you

Silver Package

At least 3 people

USD1,250
  • Workshop or Program Participation
  • Airport Transfers
  • Customized Badge
  • Expert Mentorship (Private Sessions)
  • Supervision & Secretarial Services
  • Accredited Certificate of Participation
  • Complete Training Kit
  • Coffee Break
  • Closing Ceremony

Gold Package

At least 3 people

USD1,850
  • 5-night stay in a 5-star hotel
  • Workshop or Program Participation
  • Airport Transfers
  • Customized Badge
  • Expert Mentorship (Private Sessions)
  • Supervision & Secretarial Services
  • Accredited Certificate of Participation
  • Complete Training Kit
  • Coffee Break
  • Closing Ceremony

Complete your registration

We will contact you within one business day to confirm.