Skip to main content

AppSec Atlas Security Guide

# Learning Paths

Choose the path that matches your role and goals. Each path orders the guides for maximum learning efficiency.


Complete Beginner Path

Start here if: You are new to cybersecurity and want to build a strong foundation.

Step 1: OWASP Top 10 Deep Dive (Beginner)
Step 2: Authentication & Authorization (Beginner-Intermediate)
Step 3: Cryptography for Developers (Intermediate)
Step 4: Secure Coding Practices (Intermediate)
Step 5: CTF Learning Guide (All levels)
Step 6: Bug Bounty Hunting Guide (Intermediate)

Developer / Secure Coding Path

Start here if: You are a developer who wants to write more secure code.

Step 1: Secure Coding Practices (Intermediate)
Step 2: OWASP Top 10 Deep Dive (Beginner)
Step 3: Authentication & Authorization (Intermediate)
Step 4: API Security Guide (Intermediate)
Step 5: Frontend Security Playbook (Intermediate)
Step 6: Security Code Review Guide (Intermediate)
Step 7: DevSecOps Handbook (Intermediate)

Cloud / DevOps Security Path

Start here if: You work in cloud infrastructure, DevOps, or platform engineering.

Step 1: Secrets Management Guide (Intermediate)
Step 2: CI/CD Pipeline Security (Intermediate)
Step 3: Cloud Security Fundamentals (Intermediate)
Step 4: Container & Kubernetes Security (Intermediate)
Step 5: IaC Security Guide (Intermediate)
Step 6: Serverless Security (Intermediate)
Step 7: Supply Chain Security (Advanced)

AI/ML Security Path

Start here if: You build or secure AI systems, LLMs, or agentic applications.

Step 1: Agentic AI Security Guide (Advanced)
Step 2: LLM Security & Prompt Injection (Intermediate)
Step 3: RAG Security Guide (Advanced)
Step 4: AI Red Teaming Playbook (Advanced)
Step 5: ML Model Security (Advanced)
Step 6: MCP & Tool-Use Security (Advanced)

Red Team / Offensive Security Path

Start here if: You want to learn ethical hacking and penetration testing.

Step 1: OWASP Top 10 Deep Dive (Beginner)
Step 2: Web Application Security (Intermediate)
Step 3: Network Security & Attacks (Intermediate)
Step 4: Penetration Testing Methodology (Intermediate)
Step 5: Social Engineering & Phishing (Intermediate)
Step 6: Bug Bounty Hunting Guide (Intermediate)
Step 7: CTF Challenge Set (All levels)

Blue Team / Defensive Security Path

Start here if: You work in a SOC, incident response, or defensive security role.

Step 1: Security Logging & Monitoring (Intermediate)
Step 2: Vulnerability Management (Intermediate)
Step 3: Incident Response Playbook (Intermediate)
Step 4: Digital Forensics Basics (Intermediate)
Step 5: SOC Operations Guide (Advanced)
Step 6: NIST CSF Guide (Intermediate)

Compliance & Governance Path

Start here if: You work in GRC, compliance, or risk management.

Step 1: NIST Cybersecurity Framework (Intermediate)
Step 2: SOC 2 Compliance Guide (Intermediate)
Step 3: GDPR Technical Implementation (Intermediate)
Step 4: Privacy Engineering Guide (Intermediate)
Step 5: DevSecOps Handbook (Intermediate)
Share this guide