Getting Started with Practical DevSecOps: CDE Certification, Supply‑Chain Attack Course, and Lab Access Duration
Welcome to Practical DevSecOps! Whether you’re preparing for the Certified DevSecOps Engineer (CDE) exam, exploring our Supply‑Chain Attack module, or wondering how long you can use the hands‑on labs, this guide walks you through the first steps, course content, and access policies. By the end of the article you’ll know exactly how to enroll, what you’ll learn, and how to make the most of your lab time.
1. How to Begin Your CDE Certification Journey
1.1 No Formal Request Required – Just Schedule It
The CDE certification process is streamlined through our single‑sign‑on (SSO) portal. Follow these steps:
-
Log in to the Members Portal
-
Use the same credentials you employ for the lab environment (SSO syncs both portals).
-
Navigate to the “CDE Scheduling” Section
- After authentication, click “Schedule CDE” on the dashboard.
-
Select Your Preferred Start Date
- Choose any future date that fits your calendar. The system will lock in the date and send you a confirmation email with exam details and pre‑exam resources.
-
Prepare with Recommended Materials
- You can review it by downloading the PDF manual, which contains all the course materials.
1.2 What Happens After Scheduling?
-
Lab Availability: You can start using the labs portal to study.
-
Support: Mattermost channel to ask any questions related with the courses.
2. Inside the Software Supply Chain Security Expert Course
Supply‑chain security is a fast‑evolving threat vector. Our course is designed to give you a holistic, up‑to‑date view of how attackers compromise software from code to deployment.
2️⃣ Core Topics Covered
| Module | Key Areas |
|---|---|
| Application‑Level Threats | Dependency confusion, malicious libraries, code injection |
| Container Security | Image tampering, malicious base images, runtime attacks |
| Kubernetes Hardening | Supply‑chain risks in Helm charts, pod security policies |
| CI/CD Pipeline Exploits | Credential leakage, compromised build agents, rogue pipelines |
| Real‑World Case Studies | SolarWinds, Codecov, and recent supply‑chain incidents |
| Defensive Strategies | SBOM generation, provenance verification, automated scanning tools |
2️⃣ What Makes This Course Stand Out?
-
Hands‑On Labs: Each module includes a lab where you replicate an attack and then apply mitigations.
-
Industry‑Relevant Tools: Work with tools such as Syft, Grype, Trivy, and GitHub Advanced Security.
Scenario: Imagine you receive a pull request that adds a new npm package. In the lab you’ll learn how to detect a malicious package masquerading as a legitimate one, then enforce policy using an SBOM gate in your CI pipeline.
3. How Long Do You Keep Access to Course Videos and Labs?
3.1 Uniform Lab Access Across All Courses
- Standard Access Period: 60 days from the date of purchase.
Example: If you buy the Certified DevSecOps Professional (CDP) course on March 1, your lab environment will be available until April 30.
3.2 Video Content Availability
-
Unlimited Streaming: All recorded lectures and demo videos will remain accessible for up to 3 years.
-
Download Option: You may download PDFs of slide decks, but video files are streaming‑only to protect intellectual property.
3.3 Extending Your Lab Time
-
Purchase Additional Days: Through the portal you can buy extra lab extensions in 30‑day increments.
-
Corporate Licenses: If your organization holds an enterprise license, labs may be available for the length of the contract.
4. Common Questions & Quick Tips
| Question | Answer |
|---|---|
| Do I need to request the CDE certification separately? | No. Simply log in, schedule your start date, and the system handles the rest. |
| What if I finish the labs before 60 days? | You can continue watching the videos or work on the optional labs we have already provided to further enhance your knowledge beyond the mandatory ones. |
| Can I retake the CDE exam if I fail? | Yes, you may schedule a retake after a 15-day cooling-off period. Please note that a retake exam will incur an additional USD 100 fee. You can purchase the retake exam voucher here: https://www.practical-devsecops.com/exam-retake/ and select your enrolled course. |
| Could I know the meaning of a Certificate of Completion in our course? | A Certificate of Completion refers to the certificate that you will receive once you have successfully completed the course. You need to complete all the Mandatory Exercise and videos first and then you can download the Certificate of Completion by yourself |
| When does lab countdown start? | It depends on the countdown displayed in your lab time progress, as indicated in your course, the countdown will start when your lab will expire in 60 days from the date of provisioning your lab, whether you use the labs or not. 60 days is a fixed time window. After 60 days, you will not have access to the labs. |
Quick Tips for Success
-
Mark Your Calendar: Set reminders for the 60‑day lab expiry.
-
Leverage the Support: Use the mattermost channel to get real‑time help on tricky lab steps.
-
Document Your Findings: Keep a personal notebook of each ; it’s invaluable for the certification exam.
5. Next Steps
-
Log in to the members portal and schedule your CDE start date.
-
Enroll in the Supply‑Chain Attack course if you haven’t already.
-
Plan your 60‑day lab usage—prioritize high‑impact modules first.
-
Join the community forum to share insights and ask questions.
Embark on your DevSecOps journey with confidence—Practical DevSecOps equips you with the knowledge, tools, and hands‑on experience you need to secure modern software supply chains and earn the CDE credential. Happy learning!