🎓 DevSecOps training in United States · live online in ET (UTC−5) · corporate onsitecontact@DevOpsSchool.com+91 99057 40781

> Security · DevOpsSchool Training

DevSecOps Training in United States

Live online batches timed for ET (UTC−5), or corporate onsite across United States — every session a live demo in a real lab, not slides.

★ 4.8 / 5 from 2,300+ ratings18,000+ engineers certifiedTrained teams at JPMorgan Chase, Verizon, Nokia, World Bank

Next batch
TimezoneET (UTC−5)
Modules10
Hands-on labs3
Engineers we've trained work atJPMorgan Chase · Bank of America · Wells Fargo · Verizon · Nokia · World Bank · GE Healthcare · VMware · Oracle · Qualcomm · Mercedes-Benz · Airbus · Datadog · Splunk · Deloitte · Infosys · Wipro · Capgemini

# upcoming batches

When the next DevSecOps batch runs in United States

Times shown in ET (UTC−5). New cohorts start on the 1st of every month.

Upcoming batches
StartsDays & timeTimezoneModeDurationSeatsEnrol
Most popularWeekend · Sat · Sun
10:00 AM – 1:00 PM
ET (UTC−5)Live online · Corporate onsite5 weekends of 10 leftReserve
Weekday · Mon · Wed · Fri
8:00 – 10:00 PM
ET (UTC−5)Live online · Corporate onsite5 weeks of 10 leftReserve

Batches are capped at 10 learners by design. We do not run a classroom in United States — sessions here are live online, or onsite at your office for corporate batches.Need a date that isn't listed? Talk to us about a private batch →

# how you attend

Four ways to take this training — three of them available here

Live online

Individuals, anywhere

Scheduled instructor-led batch. Every session is a live demo in a real lab, and every session is recorded.

Reserve my seat

Corporate onsite

Teams of 8–30

Custom agenda built from your stack, delivered at your office or online, in your timezone. NDA-friendly, invoiced against a PO.

Request a quote

Self-paced video

Self-starters

The full recorded curriculum plus a year of the entire LMS — 20+ courses and 50+ tools, not just this one.

Enroll now

# private batches

Private corporate batch for your team

We start with a discovery call, map your stack to the modules below, and drop anything your team already runs in production. Delivery is at your office, online, or hybrid — in your timezone, scheduled around your release calendar.

  • Custom agenda built from your stack, not a fixed syllabus
  • Teams of 8–30; larger cohorts split into parallel batches
  • Recordings, lab repos and per-attendee certificates
  • Attendance and assessment report for your L&D team
  • PO, tax invoice and NDA handled before delivery
Talk to us about a private DevSecOps batch

Already know what you need?

Send us the tools, the team size and a rough window. You'll get an agenda and a quote back, not a sales call.

contact@DevOpsSchool.com
+91 99057 40781

# united states

DevSecOps training in United States

DevSecOps training in United States is taken mostly by DevOps engineers adding security to existing pipelines and Security engineers working with delivery teams. Sessions run live online in ET (UTC−5), or onsite at your office — there is no United States classroom. Teams here often pair it with our DataOps and DevOps training, and a corporate batch can cover more than one in a single engagement. A United States-wide cohort spans four domestic timezones and, more importantly, several different hiring markets. The expectations of a platform engineer in a coastal product company and one in a midwestern insurance carrier are not the same, and a session that assumes either will lose the other. We handle that by teaching the reasoning rather than the house style, and by keeping the labs realistic for both. The common thread across US teams is cost scrutiny. Cloud spend has moved from a growth line to a reviewed line, and engineers are increasingly expected to explain a bill as fluently as an architecture diagram. That is now a substantial part of what a US cohort actually asks about. There is no US classroom. Sessions are live online, and the timezone offset from IST is significant — most US learners rely on recordings for part of the cohort, with mentor hours scheduled in US working time. Corporate batches are run entirely within your own hours and invoiced in USD.

Teams we've trained here

How we deliver in United States

We do not run a classroom in United States. Batches here are live online, or onsite at your office for corporate cohorts.

Our two classrooms are in Bengaluru and Hyderabad.

# the subject

What is DevSecOps?

DevSecOps means the security work happens where the change happens: dependency and container scanning in the pipeline, static and dynamic analysis on every merge request, secrets kept out of source control by construction, infrastructure policy evaluated before apply, and a software bill of materials produced for every release. The design problem is signal. A pipeline that fails on every medium-severity finding gets bypassed within a week. The practice that works is failing the build on a narrow, defensible set of conditions and reporting the rest.

Why it's in demand now

Supply-chain attacks and regulation have moved security from a pre-release gate to a continuous property of the pipeline, and the people who can implement that without destroying delivery speed are genuinely scarce. Employers are looking for engineers who can hold both concerns at once rather than specialists in either.

# outcomes

What you'll be able to do

Add dependency, container and static analysis to a pipeline with tolerable noise
Keep secrets out of source control and rotate the ones already there
Enforce infrastructure policy before changes are applied
Produce and use a software bill of materials
Decide defensibly which findings fail a build and which only report
Respond to a disclosed vulnerability in a dependency you ship

# curriculum

10 modules. Live demos in a real lab, not slides.

Every module follows the same shape: 5 hrs · 2 assignments · 1 capstone.

01DevSecOps as part of DevOpsLive & Interactive5 hrs · 2 assignments · 1 capstone

What is DevSecOps?, DevSecOps as part of DevOps, Static Code Analysis, Dynamic Code Analysis, Secure Code Review, Defect Classifications, OWASP open web application security project, CWE common weakness enumeration

02DevOps and CI/CD RefresherLive & Interactive5 hrs · 2 assignments · 1 capstone

DevOps and CI/CD Refresher, DevOps Basics, Principles of DevOps, DevOps Benefits, Continuous Integration, Continuous Deployment, Continuous Delivery, Typical CI/CD pipeline

03DevSecOps foundationsLive & Interactive5 hrs · 2 assignments · 1 capstone

Deployment strategies, Tooling, Maven, Docker, Kubernetes, Jenkins, Bitbucket, Travis

04Secure SDLC Activities and Security GatesLive & Interactive5 hrs · 2 assignments · 1 capstone

OWASP ZAP/, Ansible/Chef, Inspec, Terraform, Secure SDLC, What is Secure SDLC, Secure SDLC Activities and Security Gates, Requirements, Design, Implementation and Testing

05Deployment and MaintenanceLive & Interactive5 hrs · 2 assignments · 1 capstone

Deployment and Maintenance, Embedding Security as part of CI/CD pipeline, DevSecOps and challenges with Pentesting and Vulnerability Assessment., DevSecOps Maturity Model (DSOMM), Maturity levels and tasks involved, 4-axes in DSOMM, Going from Maturity Level 1 to Maturity Level 4, Maturity level specific practices and challenges

06Software Component Analysis (SCA)Live & Interactive5 hrs · 2 assignments · 1 capstone

Software Component Analysis (SCA), What is Software Component Analysis., SCA Solutions, Embedding SCA tools into the pipeline, SCA Tool - Blackduck, Sonatype Nexus Lifecycle, JFrog Xray, Snyk, SAST (Static Analysis Security Testing), What is Static Application Security Testing., Embedding SAST tools in the pipeline.

07Session management & AJAX CrawlingLive & Interactive5 hrs · 2 assignments · 1 capstone

Preventing secrets exposure in the code., SAST Tool - Checkmarx, Veracode, Fortify, Coverity etc, DAST (Dynamic Analysis Security Testing), What is Dynamic Application Security Testing?, Session management & AJAX Crawling, DAST tools, SSL misconfiguration testing, Creating baseline scans for DAST.

08DAST Tool - Burp, AppScan, OWASP ZAPLive & Interactive5 hrs · 2 assignments · 1 capstone

Scan frequencies, DAST Tool - Burp, AppScan, OWASP ZAP, Infrastructure as Code (IaaC), What is Infrastructure as Code?, Benefits of Infrastructure as Code, Building Blocks, Configuration Management Systems, Ansible

09Managing vulnerabilities in the organizationLive & Interactive5 hrs · 2 assignments · 1 capstone

Modules, tasks, roles and Playbooks, Compliance as code, Handling Compliance Requirements, Using configuration management to achieve compliance., Inspec / OpenScap, Vulnerability Management, Managing vulnerabilities in the organization., Defect Dojo, RiskSense

10Issues in traditional wayLive & Interactive5 hrs · 2 assignments · 1 capstone

What is Software Development, What is SDLC, SDLC Models, Agile Model, Waterfall Model, Issues in traditional way, What is DevOps

Final certification examLive & Interactive3 hrs · online · scenario-based

Open-book, scenario-based, taken in the LMS. Two free re-attempts and detailed feedback.

# hands-on

3 labs you build on your own cloud account

We don't hand out a sandbox that expires. You provision your own free-tier environment with our guidance, so the setup skill goes with you.

LAB · SUPPLY CHAIN

Know what you ship

Generate an SBOM for a real build and trace one dependency to its origin.

SBOMTrivy

LAB · SECRETS

Get them out and rotate them

Find committed secrets in history, remove them and rotate what leaked.

Vault

LAB · POLICY

Stop it before apply

Write policy that blocks a non-compliant infrastructure change at plan time.

OPA

# toolchain

The tools you'll actually touch

SASTDASTSCATrivySonarQubeOPAVaultSBOMSigstoreOWASPDependency scanning

Who this is for

  • DevOps engineers adding security to existing pipelines
  • Security engineers working with delivery teams
  • Developers accountable for the security of what they ship
  • Platform teams setting organisational standards

Pre-requisites

  • Comfortable with Git and a CI pipeline
  • Understanding of how your software is built and deployed
  • Basic Linux and networking

How you're assessed

  • Two assignments per module, reviewed by the instructor
  • One capstone per module, pushed to your own GitHub
  • 3 hours · online · open-book · scenario-based
  • Two free re-attempts, with feedback

# pricing

Pick the level of support that fits

Every plan includes 1 year of fullDevOpsSchool LMS access.Not just this one course — the entire LMS: 20+ courses, 50+ tools, videos, quizzes, assignments and end-to-end projects.See what's in the LMS

Self-paced video

₹833/mo

billed yearly ₹9,996

All recorded sessions, labs and the full LMS — at your own pace.

1-on-1 Mentorship

₹99,999

works out to ₹8,333/moIllustrative monthly equivalent. The full amount is charged once at enrolment; we do not offer instalments.

A dedicated senior practitioner. Pace, schedule and labs tailored to you.

+ 18% tax / VAT as applicable · Prices are charged in INR.

Cohort-cancellation refund

If we cancel or postpone a cohort and you decline the rescheduled session, you get a 100% refund within 15 days. Refund policy →

Terms & course material

Recordings, slides and lab repos are licensed to you for your own learning. Terms →

Your data stays with us

We don't share your details with third parties. Privacy →

# who teaches it

Taught by practitioners who run this in production

Rajesh Kumar — Principal DevOps Engineer & Architect

Twenty years across DevOps, SRE and security, in principal and architect roles at PayPay, SoftwareAG, ServiceNow, Intuit, Adobe and IBM. Has personally trained more than 10,000 engineers at JPMorgan Chase, Verizon, Nokia, the World Bank and dozens more. He teaches what he runs, not what he reads.

rajeshkumar.xyz ↗

The wider faculty

Rajesh Kumar
Rajesh KumarPrincipal DevOps Engineer & ArchitectProfile ↗
Pavan Kumar
Pavan KumarDevOps Trainer
Nanjesh S
Nanjesh SDevOps Trainer
Manuel Morejón
Manuel MorejónDevOps Trainer
Sandeep Majesty
Sandeep MajestyDevOps Trainer
Krishnendu Barui
Krishnendu BaruiDevOps Trainer
Arun Tomar
Arun TomarDevOps Trainer

# the credential

What you walk away with

  • An industry-recognised digital certificate, verifiable on our site
  • One capstone per module, public on your own GitHub
  • A hard copy on request
  • Lifetime access to the DevOpsSchool forum

Certificate of Completion

Your Name

DevSecOps Training in United States

DS-DEVSEC-XXXX-XXXX

# reviews

What learners say

4.8 / 5 from 2,300+ ratings.

Reviews for this program are being collected from public sources. Every review shown here links to the original.

# alternatives

How this compares

What mattersYouTube + blogsGeneric online courseLocal training instituteDevOpsSchool
Teaching methodUnstructured, no sequencePre-recorded slidesSlide-led classroomLive demos in a real lab
Batch sizen/aUnlimited30–60Capped at 10
Lab environmentYours to figure outShared sandbox that expiresShared labYou build your own — the skill goes with you
Per-tool structureNoneVideo onlyVaries5 hrs · 2 assignments · 1 capstone
AssessmentNoneQuizAttendance3 hours · online · open-book · scenario-based
CertificateNoneAuto-issuedAttendance certificateIndustry-recognised, verifiable
Corporate invoicingNoCard onlySometimesPO, tax invoice, NDA
Post-training supportNoneForum for 30 daysNoneLifetime forum support
Total costFree, and it costs you monthsLow, low completionHighOne fee, LMS included

# questions

Frequently asked questions

Do you run classroom batches in United States?

No. We do not have a training centre in United States, and we would rather say so than let you plan a commute. Batches here run live online, or onsite at your own office for corporate cohorts. Our two classrooms are in Bengaluru and Hyderabad.

What time do the sessions run in United States?

Our instructors teach from India, so sessions are converted into ET (UTC−5) on the batch table above rather than quoted in IST. The weekday cohort lands more conveniently for United States than the weekend one, and every session is recorded the same day. For a corporate batch we schedule entirely inside ET (UTC−5) working hours instead.

Is the DevSecOps content different for United States?

The curriculum is the same everywhere — it is the same course, and pretending otherwise would be dishonest. What changes for United States is delivery: the batch times are set for ET (UTC−5), fees are shown in USD, and delivery is live online or onsite at your office rather than in a classroom. The examples our instructors reach for also tend to follow what United States teams actually run.

Do you provide a lab environment for DevSecOps?

No, and that is deliberate. You build the labs on your own free-tier account, and we walk through the setup and the cost guardrails in week one. A sandbox that expires when the course ends teaches you nothing you keep; your own environment does.

What if I miss a session?

Every session is recorded and available in the LMS the same day, and you keep access for a year. You can also sit the missed session again with the next cohort at no extra cost.

What do I need to know before starting DevSecOps?

Comfortable with Git and a CI pipeline; Understanding of how your software is built and deployed; Basic Linux and networking. If you are unsure whether you are ready, tell us what you work on now and we will give you a straight answer rather than a sales one.

Is there a certificate, and is it worth anything?

You get an industry-recognised DevOpsSchool certificate after the three-hour open-book exam. Most people find the capstone repositories carry more weight in an interview than the certificate itself, which is why the labs are built to be shown.

Can you run DevSecOps as a private batch for our team?

Yes. We build the agenda from your stack after a discovery call and drop anything your team already runs in production. Teams of 8 to 30 work best; larger groups split into parallel batches.

What is your refund policy?

If we cancel or postpone a cohort and you decline the rescheduled session, you get a full refund within 15 days. We do not offer a general money-back guarantee, and taxes and gateway fees are not refunded.

Do you offer instalments or EMI?

No. The fee is charged once at enrolment. Where we show a monthly figure it is arithmetic to help you size the cost against a budget, not a payment plan.

# ready when you are

Reserve your DevSecOps Training in United States seat — or ask first.

  • No spam, and no sales script
  • Curriculum in your inbox in 60 seconds
  • A human reply within 4 hours
See batch datesReserve my seat