Explain assessment as evidence in your own words and apply it to a realistic scenario.
Assessment is useful when it checks judgement and produces defensible evidence.
Check the assumption "Assessment checks reasoning" and explain what changes if it is false.
Check the assumption "Evidence is safe" and explain what changes if it is false.
Practice
Complete one guided exercise and explain your decision in plain language
Use the recap only after reading the main section
Artefact and failure modes
A short module note with one key definition and one practical example
Exam cramming. Cramming fades quickly. Practice builds judgement.
No feedback loop. Without feedback, assessment does not improve learning.
Optional
Planning and evidence
Objectives, timing, and CPD tracking
Show
If you want to start learning now, leave this closed. Come back when you want to plan your practice or keep evidence for CPD. This is guidance and it is not endorsed by awarding bodies. Standards mapping lives on the course overview page.
Learning objectives
What you will be able to do
1. Map user journeys, define NFRs, and apply threat modelling fundamentals.
User journeys and NFRs decide what you are really building, so I start there.
2. Document architecture using C4 models, ADRs, and security by design principles.
C4 models and ADRs give you a shared language and traceable decisions.
3. Implement secure coding practices including input validation and session management.
Secure coding basics prevent the easiest ways systems are abused.
4. Apply comprehensive testing strategies including OWASP ASVS and accessibility testing.
Testing and verification show whether your design survives reality.
5. Design CI/CD pipelines with DevSecOps integration.
CI and CD are how safe change happens in the real world.
6. Apply SRE principles for reliable operations and incident response.
Operations and incident response are part of architecture, not an afterthought.
7. Use OSI model and diagnostic tools for troubleshooting.
OSI diagnostics give you a reliable troubleshooting mental model.
8. Evaluate systems across multiple quality attributes (the 'ilities').
The ilities force you to think beyond features and into quality.
What comes next
Next we dig into styles, boundaries, and trade offs because those choices define system health.
Each level is independent but clearly deeper than the last. This panel makes the jump explicit.
Assessment intent
Foundations
Correct diagrams, boundaries, and responsibilities.
Style
mixed
20 questions
Pass standard
Coming next
Not externally certified
▸Evidence you can save (CPD friendly)
One clear system sketch (C4 at a simple level): users, core components, data stores, and external dependencies.
Two ADRs: one trade-off you chose, and one assumption you wrote down with a plan to verify it.
A lifecycle evidence pack for one feature: NFRs, threat sketch, tests, rollout plan, and an ops checklist.
Learning contract
Foundations outcomes
About 4 hours
Read the explanation first, then use the tools to test the idea. Skip any tool that is not useful for your goal.
Map user journeys, define NFRs, and apply threat modelling fundamentals.
Document architecture using C4 models, ADRs, and security by design principles.
Implement secure coding practices including input validation and session management.
Apply comprehensive testing strategies including OWASP ASVS and accessibility testing.
Design CI/CD pipelines with DevSecOps integration.
Loading content...
Next step
Practise this level, then move on
I recommend you use the practice assessment for Foundations to test your understanding and write a short reflection. Timed assessments are being prepared for this track.
Practice
Assessment
No timer
Pace
Reflection
Evidence
Practice assessment
Start the practice assessment for Foundations
It is designed for confidence and evidence, and you can retry as often as you need.
The timed assessment for this level is being prepared. Use the practice assessment and labs until it is ready.
Sign in to save progress and keep your pass record
You can complete the course while signed out, and your progress saves in this browser. Sign in before assessments so your pass record is attached to your account.
Courses and assessments are free. There is no paywall for the learning path, practice questions, or formal assessments. Optional donations support hosting, maintenance, and ongoing updates.
During timed assessments, copy and the context menu are restricted to reduce casual cheating. Passed assessments are recorded in your account as evidence.
Course materials are protected by intellectual property rights.View terms