2,200 €−220 €1,980 €
What this module delivers.
How the training runs
- Method
- Design web architectures, weigh styles and infrastructure
- Basis
- Official iSAQB curriculum WEB 2020.1
- Outcome
- 30 credit points, all technical, no course exam
Dates & booking
Choose a date that fits
3 dates
Sessions with this symbol offer up to 25% group discount. Click “Details & Registration” to learn more.
2,200 €−220 €1,980 €
2,200 €−220 €1,980 €
No dates match this selection.
Dates are still available. Reset the filters to see them.
Fit
Who this module is designed for
Typical roles
- You design systems whose interface runs in a browser.
- You decide the authentication, session handling and access control of a web application.
- You own response times and availability behind reverse proxies, CDNs and load balancers.
Prerequisites
No prerequisites
You can start right away. Helpful: basic knowledge of HTML, CSS and JavaScript, hands-on experience with at least one server-side framework, experience with distributed systems, ideally web applications.
Consider instead WEBSEC Gives threat analysis, cryptography and attack classes all six of its curriculum parts, where WEB treats security as one of six quality attributes.
Curriculum
CPSA® WEB Course in Detail
Curriculum 2020.1 splits WEB into seven parts across 1140 teaching minutes. It starts at the request/response cycle, runs through protocols, architecture styles and infrastructure into design, and closes on quality and worked examples. The centre of gravity is design, at 300 minutes.
01Fundamentals
This part sorts out the building blocks every web application is made of.
- The request/response cycle from the address bar to the response
- Client, server, proxy, reverse proxy and load balancer, and what each one does
- Hypermedia, pattern libraries and the single sign-on flow
- Accessibility under WCAG as a requirement on the architecture
02Protocols and Standards
This part is about the layer every later design decision rests on.
- HTTP/1.1, HTTP/2 and HTTP/3 compared, plus caching headers and DNS resolution
- TLS and the public key infrastructure behind it
- OAuth 2 and OpenID Connect for sign-in and authorisation
- CORS and content security policy as boundaries inside the browser
03Architecture Styles
This part sets the competing forms side by side so you can choose between them.
- REST with identifiable resources, a uniform interface, statelessness and hypermedia
- Component-oriented stateful backend architectures
- Single-page applications with data binding and client-side routing
- Web components built from custom elements and shadow DOM
04Technology and Infrastructure
This part covers everything that sits between the browser and the application.
- Proxies and reverse proxies, and what they absorb in load and in attacks
- Content delivery networks and load balancing
- Horizontal against vertical scaling, and what each of them costs
- Graceful degradation and progressive enhancement for weak clients
05Design of Web Architectures
The longest part of the curriculum: this is where the expensive decisions are made.
- The CAP theorem and ACID as the frame for consistency decisions
- Eventual consistency, plus CQS and CQRS as a split between reading and writing
- Strategies for session management in distributed operation
- SQL injection, cross-site scripting and CSRF, and what actually stops them
06Quality in Web Architectures
This part measures the design against the properties that count in operation.
- Least privilege, defense in depth and secure by default as security principles
- Threat modelling as part of the design work
- Scalability and availability as design goals
- Usability, accessibility, internationalization and localization
07Examples
To close, you work the decisions through on examples that are carried to the end.
- Handling reverse proxies in a delivery chain
- The rough pattern of a web backend application
- Features of a single-page framework: data binding and client-side routing
- Examples of database models behind web applications
Outcome
What you will be able to do afterwards
- 01
You justify the choice between HTTP/1.1, HTTP/2 and HTTP/3 by latency, multiplexing and caching.
- 02
You design sign-in flows with OAuth 2 and OpenID Connect, and guard the browser with CORS and a content security policy.
- 03
You decide between REST, stateful backend and single-page application by state, caching and delivery.
- 04
You plan scalability and availability through reverse proxies, load balancing and content delivery networks.
- 05
You defend applications against SQL injection, cross-site scripting and CSRF, and justify every countermeasure.
- 06
You derive a consistency and session strategy for distributed web applications from the CAP theorem and ACID.
- 07
You assess web architectures against security, scalability, usability, WCAG accessibility and internationalization.
Credit points toward CPSA-A
- Methodical competence
- 0
- Technical competence
- 30
- Communicative competence
- 0
30 of 70 points toward CPSA-A admission
Certificate of participation
The tecnovy certificate of participation records your attendance of the WEB training, not a passed examination.
Open the Certificate Showroom tecnovy →≥80%attendance
Trainers
Why tecnovy
What you get on top with us
01
iSAQB® Accredited Provider
We are an officially accredited Training Provider of the International Software Architecture Qualification Board.
02
Certificate Showroom
Get your certificate of participation and, if you have one, add your exam certificate from E-Learning. Fully automated, beautifully designed. Just for you, only at tecnovy.
03
No Slideshow, Hands-On!
Promised: no PowerPoint marathon. We work in groups, tie theory to practice, and you get real project examples from our experienced trainers plus the exchange with like-minded people.
04
Attend Twice, Pay Once
You are welcome to attend the training online again within a year as a refresher.
05
Learn from Experts
We always guarantee you the use of didactically and methodically first-class qualified trainers who draw their knowledge from training experience as well as professional practical and project experience.
06
Flexible Date Change
If you are not able to attend the course, you can rebook your training free of charge up to one week before the start of the training.
FAQs
Frequently asked questions
01Do I need CPSA-F to attend the tecnovy WEB training?
02Is there a WEB examination?
03How many credit points does WEB carry?
04How does the CPSA-A certification work?
05How long is the WEB training?
06What is the difference between WEB and WEBSEC?
07Does WEB cover specific frameworks such as React or Angular?
08Do I need to be able to program for the WEB training?
09Do I get the flipcharts from the WEB training?
What does your training at tecnovy look like?
