Reliability Security And Operations

ROADMAP

18 tracks / 415 lessons

TRACKS

[HIDDEN]

Production Reliability and Observability (Legacy Umbrella)

Legacy oversized source track retained for migration only. Prefer the split tracks for new review: reliability foundations, observability telemetry, incident management, chaos engineering, release safety, containers/platform runtime, and infrastructure as code.

Deep Dive / 36 lessons

Not published

[HIDDEN]

Caching, Workers, and Performance

Caching layers, worker systems, profiling, and practical performance mechanics.

Specialization / 32 lessons

Not published

[HIDDEN]

Security and Platform Trust

Identity, supply chain, runtime hardening, and platform-level trust boundaries.

Specialization / 19 lessons

Not published

[DRAFT]

Capacity Planning and Performance Engineering

Load envelopes, queuing trade-offs, forecasting, and the methods used to plan system growth before painful saturation.

Specialization / 24 lessons

Not published

[DRAFT]

Incident Management and Operational Learning

Incident response as an operational learning system: paging signals, roles, triage, communication, runbooks, mitigation, postmortems, corrective actions, on-call training, and durable organizational memory.

Specialization / 24 lessons

Not published

[DRAFT]

Release Safety and Progressive Delivery

Canaries, feature gates, rollback design, change safety, and the release controls that reduce production risk.

Specialization / 24 lessons

Not published

[DRAFT]

Reliability Engineering Foundations

SLIs, SLOs, failure budgets, operational trade-offs, and the core mental models behind production reliability work.

Foundation / 16 lessons

Not published

[DRAFT]

Chaos Engineering and Resilience Labs

Failure injection, resilience drills, blast-radius control, and experiment design for hardening systems before real incidents.

Specialization / 24 lessons

Not published

[DRAFT]

Application Security and Secure Design

Input validation, auth flaws, data exposure, secure defaults, and the design patterns that reduce common application risks.

Specialization / 24 lessons

Not published

[DRAFT]

Cloud, Container, and Supply Chain Security

Image provenance, runtime isolation, dependency trust, and the controls used to secure modern cloud software supply chains.

Deep Dive / 32 lessons

Not published

[DRAFT]

Cryptography, Secrets, and Key Management

Cryptographic primitives, secret rotation, key hierarchy, and the operational discipline needed to use cryptography safely.

Specialization / 24 lessons

Not published

[DRAFT]

Identity, Authorization, and Policy Systems

Identity boundaries, token flows, authorization models, policy engines, and the auditability of trust decisions in software systems.

Specialization / 24 lessons

Not published

[DRAFT]

Privacy, Governance, and Data Compliance Engineering

Draft track for lineage, retention, deletion workflows, policy enforcement, auditability, and privacy-aware data operations.

Specialization / 24 lessons

Not published

[DRAFT]

Security Foundations and Threat Modeling

Attack surfaces, trust boundaries, adversary models, and the threat-modeling habits needed before secure design becomes concrete.

Foundation / 16 lessons

Not published

[DRAFT]

Detection, Response, and Forensics

Security telemetry, investigation workflows, triage, containment, and the evidence-handling needed after active compromise.

Deep Dive / 32 lessons

Not published

[DRAFT]

Reverse Engineering and Program Understanding

Understand software from the outside inward: binaries, protocols, traces, decompilers, symbols, patching, and ethical analysis.

Foundation / 8 lessons

Not published

[DRAFT]

Adversarial Security and Hacker Mindset

Think like a defender who understands attackers: threat modeling, abuse cases, exploit chains, social engineering, controls, and responsible disclosure.

Foundation / 8 lessons

Not published

[DRAFT]

Observability, Telemetry, and Production Debugging

Production observability depth for backend systems: OpenTelemetry propagation, Prometheus cardinality, logs, sampling, traces, profiling, service maps, and incident evidence.

Deep Dive / 24 lessons

Not published