ALL_SERIES
SERIES_OVERVIEW // CURRICULUM_MAP

Learn Java Security, Cryptography and Integrity

// Kaufman skill map, target performance, mental model, practice loop, and engineering frame for mastering Java security, cryptography, and integrity.

35 Lessons666 Min Total04 Phases

This overview is designed to help you choose the right entry point quickly. Follow the full track from lesson one, continue from your last checkpoint, or jump straight into a phase that matches what you need right now.

abacaccess-controlaeadaes-gcmapi-security+155 more

Curriculum Map

Navigate by phase, then choose the lesson that matches your current depth.

07

JCA/JCE Provider Model & Crypto Agility

21 min

JCA/JCE provider model, crypto agility, provider resolution, algorithm naming, FIPS/HSM integration, and production-grade Java cryptographic design rules.

08

Randomness, Entropy & SecureRandom

21 min

Randomness, entropy, SecureRandom, DRBG, nonce/IV generation, token generation, collision risk, and production failure modes in Java cryptographic systems.

09

Hashing, MAC, KDF & Password Storage

18 min

Hashing, MAC, KDF, dan password storage untuk Java engineer yang perlu membedakan integrity primitive, authentication primitive, derivation primitive, dan credential verifier secara benar.

10

Symmetric Encryption, AEAD & Data Protection

18 min

Symmetric encryption, AEAD, AES-GCM, ChaCha20-Poly1305, nonce discipline, associated data, envelope encryption, and data protection design for Java systems.

11

Asymmetric Cryptography: RSA, EC, EdDSA, KEM

18 min

Asymmetric cryptography in Java: RSA, elliptic curves, EdDSA context, key agreement, KEM, key serialization, parameter discipline, crypto agility, and production failure modes.

12

Digital Signatures, Non-Repudiation & Integrity

16 min

Digital signatures in Java: signature semantics, canonical signing, detached signatures, RSA-PSS, Ed25519, verification pipelines, non-repudiation limits, audit-grade evidence, and integrity failure modes.

13

Certificates, X.509, PKI & Trust Stores

20 min

Certificates, X.509, PKI, Java KeyStore/TrustStore, trust anchors, PKIX validation, hostname verification, revocation, mTLS identity boundaries, and certificate rotation for production Java systems.

14

Key Management, HSM, KMS, PKCS#11 & Rotation

20 min

Key management for Java systems: key lifecycle, HSM, KMS, PKCS#11, cryptoperiod, rotation, envelope encryption, access control, compromise response, and operational governance.

15

TLS, JSSE, mTLS & Certificate Validation

19 min

TLS and JSSE for production Java systems: TLS 1.2/1.3 mental model, handshake, trust validation, mTLS, hostname verification, cipher policy, debugging, and operational hardening.

16

Authentication: Passwords, MFA, Passkeys & WebAuthn

19 min

Authentication engineering for Java systems: passwords, MFA, passkeys, WebAuthn, authenticator lifecycle, account recovery, risk-based controls, and session bootstrap.

17

OAuth2, OIDC, Token Security & Federation

20 min

OAuth2, OpenID Connect, token security, JWT validation, JWKS rotation, refresh-token safety, sender-constrained tokens, and federation failure modes for Java systems.

18

Authorization: RBAC, ABAC, ReBAC & Policy Engines

16 min

Authorization engineering for Java systems: RBAC, ABAC, ReBAC, policy engines, object-level authorization, tenant boundaries, enforcement layers, decision auditing, and test strategy.

19

Session, Cookie, CSRF, CORS & Browser Boundaries

17 min

Session, cookie, CSRF, CORS, and browser trust-boundary engineering for Java web applications, APIs, SPAs, BFFs, and enterprise systems.