GitHub

GH-500 GitHub Advanced Security

Embed “shift-left” security into every repo in 1 instructor-led day. This workshop teaches you to set up Dependabot, secret scanning, CodeQL analysis and enterprise-grade governance – preparing you for GitHub’s forthcoming Advanced Security credential.

Why choose this course?

  • Developer-first protections. Learn how Dependabot, secret scanning and CodeQL find vulnerabilities before code hits production.
  • Govern at scale. Apply organisation-wide rules, policies and audit capabilities that keep thousands of repos compliant.
  • Official GitHub curriculum. All labs and demos come straight from the GH-500T00 courseware – no filler, no guesswork.
  • Hybrid delivery – attend on-campus or virtually from anywhere in South Africa.

This course is ideal for:

  • Security engineers, DevOps or platform teams integrating GitHub Advanced Security (GHAS).
  • GitHub admins responsible for organisation policies, billing and licence governance.
  • Developers who want to “shift security left” with automated scans on every push.

Prerequisites

A GitHub account plus working knowledge of Git basics (clone, commit, push). No previous security-tool experience required.

Course Content

  • Introduction to GitHub Advanced Security – GHAS feature set, licence activation, security overview
  • Configure Dependabot Security Updates – dependency graphs, alerts, PR workflows & advisory reviews
  • Secret Scanning for Repositories – push protection, custom patterns, partner patterns & alert triage
  • Configure Code Scanning on GitHub – default & advanced analysis, SARIF results, workflow tuning
  • Identify Vulnerabilities with CodeQL – build databases, run queries, interpret results & autofix patterns
  • Advanced Code Scanning with CodeQL – custom queries & packs, multi-language pipelines, best practices
  • GitHub Administration for GHAS – enable org-wide, set rulesets, manage licences, audit & compliance
  • Manage Sensitive Data & Security Policies – security.md, branch-protection rules, secret-redaction, compliance reporting

Hardware Requirements

Interested?

Enquire today and one of our consultants will be in touch.