Featured resource
2026 Tech Forecast
2026 Tech Forecast

1,500+ tech insiders, business leaders, and Pluralsight Authors share their predictions on what’s shifting fastest and how to stay ahead.

Download the forecast
  • Course

OWASP: Insecure Design

Insecure design is a top-tier security risk that can't be patched in code. This course will teach you to architect resilience, conduct lightweight threat modeling, and integrate security into the design phase of your SDLC.

Intermediate
59m

Created by Dusan Babic

Last Updated Apr 14, 2026

Course Thumbnail
  • Course

OWASP: Insecure Design

Insecure design is a top-tier security risk that can't be patched in code. This course will teach you to architect resilience, conduct lightweight threat modeling, and integrate security into the design phase of your SDLC.

Intermediate
59m

Created by Dusan Babic

Last Updated Apr 14, 2026

Get started today

Access this course and other top-rated tech content with one of our business plans.

Try this course for free

Access this course and other top-rated tech content with one of our individual plans.

This course is included in the libraries shown below:

  • Security
What you'll learn

Flaws in a system's architecture are often the costliest to fix and can't be resolved by secure coding alone. In this course, OWASP: Insecure Design, you’ll learn how to integrate security into the very foundation of your software. First, you’ll explore lightweight threat modeling using STRIDE and abuse cases to find weaknesses before a single line of code is written. Next, you’ll discover how to apply core security-by-design principles to protect sensitive data, enforce trust boundaries, and prevent common architectural CWEs. Finally, you’ll learn how to incorporate security reviews and Architecture Decision Records (ADRs) into your SDLC to ensure security is a repeatable part of your engineering culture. When you’re finished with this course, you’ll have the skills and knowledge needed to architect resilient systems and mitigate the #4 OWASP top ten risk: Insecure Design.

OWASP: Insecure Design
Intermediate
59m
Table of contents

About the author
Dusan Babic - Pluralsight course - OWASP: Insecure Design
Dusan Babic
1 courses 0.0 author rating 0 ratings

Dusan is a Senior Software Engineer and App Sec Tech Lead with over a decade of experience. He specializes in securing enterprise solutions and is passionate about learning and teaching others.

2025 Forrester Wave™ names Pluralsight as a Leader among tech skills dev platforms

See how our offering and strategy stack up.

forrester wave report