Security Engineering Bridge Review
Complete before Module 1. It diagnoses prerequisites; it does not waive required work.
Closed-book gate
Explain process and memory isolation, TCP/TLS boundaries, DNS, authentication versus authorization, database transactions, cloud IAM, containers, CI/CD, observability, and incident SLOs.
Then:
- draw a service data flow and three trust boundaries;
- implement a negative authorization test;
- inspect a certificate and authenticated protocol;
- trace one request through application and infrastructure logs;
- package the test in a reproducible isolated environment.
Route gaps to Semesters 4, 5, 6, and 9. Submit diagnosis, remediation evidence, and readiness decision.