Ec-council | Learning
Certified Application Security Engineer | CASE .NET
The Certified Application Security Engineer (CASE .NET) evaluates the critical security skills and knowledge required throughout a typical software development life cycle (SDLC), emphasizing the importance of implementing safe methodologies and practices in today's unsafe operating environment.
The certified training programme CASE es developed simultaneously to prepare software professionals for the necessary capabilities expected by employers and academia worldwide. It is designed to be a practical and comprehensive course on application security that will help software professionals create secure applications.
The training programme covers the security activities involved in all phases of the software development life cycle (SDLC): planning, creation, testing and deployment of an application.
Unlike other applications security training, the CASE program goes beyond the simple guidelines on secure coding practices and includes secure collection of requirements, robust application design and management of security issues in the post-development phases of application development.
About the CASE .NET course
Course outline
- Understanding application security, threats and attacks
- Collection of safety requirements
- Secure application design and architecture
- Secure coding practices for validation of entries
- Secure coding practices for authentication and authorization
- Secure coding practices for cryptography
- Secure coding practices for session management
- Secure coding practices for error management
- Static and dynamic application safety tests (SAST and DAST)
- Secure deployment and maintenance
.NET is Microsoft's programming platform for Windows applications and Web programming. Given the pervasive nature of Windows, secure .NET programming is clearly a critical skill. CASE.Net will teach you the skills you need to write secure .NET applications.
Duration: Total training: 24 hours or 3 full day sessions
Course materials: All participants will receive their personal copies of CASE course materials, a CASE exam voucher from EC-Council, and access to iLabs (the EC-Council cloud laboratory environment).
Certification: The CASE exam can be completed after formal CASE training. Candidates who pass the exam will receive their CASE certificate and membership privileges. Members are required to comply with EC-Council's continuing training requirements policies.
- .NET developers with a minimum of 2 years experience and people wishing to become engineers/analysts/testers in applications security.
- People involved in developing, testing, managing or protecting a wide range of applications.
About CASE .NET
About the instructor
iLabs Demo
The programme CASE allows app developers and testers to demonstrate their mastery of the knowledge and skills needed to manage current application security vulnerabilities.
Eligibility criteria : To be eligible for the CASE examination, the candidate must either:
- To attend the official CASE training of the EC-Council via an accredited partner of the EC-Council (accredited training centre / iWeek / iLearn) (all applicants must pay a file fee of USD 100, unless these fees are already included in your training fee) or
- Be an ECSP member (.NET/Java) in good standing (you do not need to pay a duplicate file fee as these fees have already been paid) or
- Have at least 2 years of professional experience in the field of information/software security (you will have to pay USD 100 non-refundable file fee) or
- Have any other equivalent certification in the industry, such as GSSP .NET/Java (you will have to pay USD 100 non-refundable filing fee).
Number of questions : 50
Required success score : 70 %
Duration of test 2 hours
Test Format : Multiple choice
Provision of the test The EC-Council Examination Portal.


