Essentials of IBM Rational AppScan Standard Edition


Upon completion of the course, students will be able to:

• Scan Web applications for security issues using AppScan Standard Edition
• Scan Web services for security issues using AppScan Standard Edition
• Review scan results, filter false positives, prioritize issues and communicate them to stakeholders
• Create reports based on discovered security issues
• Optimize scan configuration and use advanced techniques to scan Web applications
• Understand how to extend AppScan’s functionality using the AppScan SDK and AppScan eXtensions framework
• Troubleshoot AppScan Standard Edition

Course Overview :

This course teaches you how to use IBM Rational AppScan Standard Edition effectively. The course demonstrates how to create Web application and Web services security scans as well as how to review and prioritize your scan results and create reports. You will also learn how to optimize your scan so that it performs efficiently and accurately, and you will learn some advanced techniques to help scan your applications. It also introduces the various ways to customize AppScan by using the AppScan SDK and eXtensions Framework (AXF).

Who should attend?

This instructor-led, classroom course is intended for the following audience:

• Web developers
• Web development managers
• Quality assurance and testing specialists
• Security auditors


To benefit from this course, students should have the following skills or experience:

• Web application security knowledge


• 2 Days

Course Contents

Rational AppScan Standard Edition overview
Installation and setup
Making the most of your installation
Configuring a scan
Running a scan
Reviewing scan results
Creating reports
Scanning Web 2.0 applications
Complex login and session management
Content-based and widget scanning
Optimizing your scan
Scanning Web services
Extending Rational AppScan Standard Edition
Troubleshooting Rational AppScan Standard Edition

