A focused graduate certificate that teaches how to identify and mitigate risks across software development and delivery pipelines. Suited for experienced practitioners in software, cloud or application development roles who want hands‑on, GIAC‑aligned training in securing CI/CD, dependencies and artifacts.
The curriculum emphasizes practical controls and defensive techniques across the software supply chain. Core learning outcomes highlighted by the program include supply chain threat modeling, secure CI/CD pipeline practices, dependency and artifact risk analysis, and detection and response to supply chain attacks.
Applicants must have professional experience and hold a current software, cloud, or application development role. Apply by the 15th of any month to receive a decision within 30 days and potentially start courses as soon as one month after admission.
The program is designed to prepare practitioners to secure software build and delivery pipelines and to detect and respond to supply chain attacks. Coursework is tied to GIAC certifications employers recognize; graduates commonly apply these hands‑on skills in roles such as application security, DevSecOps, cloud security, and incident response within organizations that prioritize secure software supply chains.
SANS.edu notes dedicated student advising and academic pricing on SANS courses and GIAC certifications. The program description references alignment with employer‑valued GIAC credentials and DoD/NSA approvals, which may support employer tuition assistance or recognition for workforce programs; prospective students should consult SANS.edu admissions for specific funding options.
Shortlist scholarships and plan your application — free guidance from our advisors.