Security principles
Importance: Essential (5 of 5)
Applies threat, risk, least-privilege, and defense-in-depth models.
Security
Designs and implements controls that reduce risk across infrastructure, applications, identities, and cloud environments.
Skill coverage
100%
Course coverage
97%
Skill coverage shows how much of the role's capability map already has a published course. Course coverage shows how much of the mapped course pipeline for this role has shipped.
Capability map
Importance describes how central each capability is to the role. Course coverage shows where you can build the skill in the current OpenSkills catalog.
Security Engineer capability map
5 capabilities
Importance: Essential (5 of 5)
Applies threat, risk, least-privilege, and defense-in-depth models.
Importance: Essential (5 of 5)
Identifies trust boundaries, abuse cases, and proportionate mitigations.
Course coverage
Importance: Essential (5 of 5)
Designs controls as coherent parts of system architecture.
Course coverage
Importance: Essential (5 of 5)
Engineers authentication, authorization, secrets, and privileged access.
Course coverage
Importance: Important (3 of 5)
Sets policy, standards, and program direction, and measures whether controls hold in practice.
4 capabilities
Importance: Very important (4 of 5)
Protects network boundaries, flows, and services.
Importance: Essential (5 of 5)
Integrates secure design, coding, testing, and dependency controls.
Course coverage
Importance: Very important (4 of 5)
Applies cloud identity, workload, data, and configuration controls.
Importance: Very important (4 of 5)
Uses detection and incident response to contain active threats.
Course coverage
Learning path
The concepts this role is built on.
Adjacent knowledge that improves day-to-day judgment.
Deeper paths for particular environments or directions.
Concrete operational procedures from the courses on this page.
Disabling the credential, revoking the temporary sessions it already started, and scoping the principals, identity providers, and resources an attacker may have created for persistence, across AWS, Microsoft Entra, and Google Cloud.
Cloud Security
Isolating one compromised virtual machine without destroying evidence: the order of memory capture, disk snapshots, network isolation, and revoking the instance's own cloud credentials, then rebuilding from a known-good image rather than cleaning in place.
Cloud Security
Put the map to work
Search multiple job sources at once with queries tailored to this career, then use the skill map above to evaluate what each role actually asks for.