Spring Security Training

Build a shared model for authentication and authorisation in your Spring applications. Trace the security filter chain, configure application and method security, and work with OAuth2, OpenID Connect, JWT, and testing in hands-on exercises.

Two-day in-house course for up to 12 participants. Delivered in Zürich, at your office across Switzerland or Europe, or fully remote; material is aligned with the Spring Security and Spring Boot versions your team uses.

When This Training Is Worth Your Team's Time

For CTOs and engineering managers whose teams own Spring-based identity and access controls and need more than copied configuration.

  • Security Knowledge Is Concentrated

    Only a few engineers understand the filter chain, authentication flows, or method security, making changes and reviews dependent on those individuals.

  • OAuth2 or OIDC Is on the Roadmap

    The team will integrate an identity provider, secure APIs, or work with JWTs and needs the underlying protocol and framework model.

  • An Upgrade Exposes Gaps

    Older Spring Security configuration must be migrated and the team needs to understand the current approach rather than translate settings mechanically.

What You Will Learn

Participants examine Spring Security's architecture and apply its main authentication and authorisation mechanisms in web applications and APIs.

  • Security Architecture

    Understand the Spring Security filter chain, security context, and how authentication and authorisation plug together at a low level.

  • Authentication & Authorisation

    Implement form login, HTTP Basic, and custom authentication providers. Apply role- and permission-based access control at the URL and method level.

  • OAuth2 & OpenID Connect

    Integrate OAuth2 login, protect resource servers, and implement OpenID Connect flows for modern, standards-based identity management.

  • JWT & Stateless APIs

    Validate JSON Web Tokens for stateless REST APIs. Examine how authorisation servers issue access and refresh tokens, then apply token validation to service APIs.

Who Is This Training For?

This training is for Java developers and teams responsible for authentication and authorisation in Spring-based web applications or APIs.

  • Backend Developers

    Developers building REST APIs or web applications who need to implement and maintain secure authentication and authorisation.

  • Teams Adding OAuth2 or OIDC

    Teams integrating login, resource-server security, or federated identity who need to understand the protocols and their Spring Security configuration.

  • Security-Conscious Engineers

    Developers who want to understand the "why" behind Spring Security's defaults and how to extend or customise them safely.

Training Details

All sessions are hands-on with real code exercises. We tailor content and pace to your team's experience level.

Format

In Zürich, on-site at your office, or fully remote. We adapt exercises and tooling to your environment.

Duration

Typically 2 days. We can extend the course to cover advanced topics such as reactive security or microservice security patterns.

Language

Delivered in English or German. Italian available on request.

Prerequisites

Spring Boot experience and basic familiarity with HTTP and REST.

Frequently Asked Questions

Where does the training take place?

In Zürich, at your office anywhere in Switzerland or Europe, or fully remote.

Is the training available in German?

Yes. We deliver the training in English or German – Italian is available on request. Course materials are in English.

How long does the training take?

Typically 2 days. We can extend the course to cover advanced topics such as reactive security or custom authentication providers.

Which Spring Security version is covered?

Before each delivery, we align the material with the Spring Security and Spring Boot versions your team uses. We also cover the relevant migration path when your applications use older versions.

How much does the training cost?

We deliver in-house, for up to 12 participants. The final price depends on group size, duration, and how much we tailor the content. Book a 30-minute call or email hello@42talents.com. We reply personally to emails within one business day.

Related Spring Courses

Explore the other courses in our Spring training curriculum.

Build the capability your roadmap needs

Tell us which capability your team needs to build. We'll shape the course around your stack, delivery goals, and current codebase.

In-house, up to 12 participants. Content tailored to your codebase and your stack.