Format
In Zürich, on-site at your office, or fully remote. We adapt exercises and tooling to your environment.
Build a shared model for authentication and authorisation in your Spring applications. Trace the security filter chain, configure application and method security, and work with OAuth2, OpenID Connect, JWT, and testing in hands-on exercises.
Two-day in-house course for up to 12 participants. Delivered in Zürich, at your office across Switzerland or Europe, or fully remote; material is aligned with the Spring Security and Spring Boot versions your team uses.
For CTOs and engineering managers whose teams own Spring-based identity and access controls and need more than copied configuration.
Only a few engineers understand the filter chain, authentication flows, or method security, making changes and reviews dependent on those individuals.
The team will integrate an identity provider, secure APIs, or work with JWTs and needs the underlying protocol and framework model.
Older Spring Security configuration must be migrated and the team needs to understand the current approach rather than translate settings mechanically.
Participants examine Spring Security's architecture and apply its main authentication and authorisation mechanisms in web applications and APIs.
Understand the Spring Security filter chain, security context, and how authentication and authorisation plug together at a low level.
Implement form login, HTTP Basic, and custom authentication providers. Apply role- and permission-based access control at the URL and method level.
Integrate OAuth2 login, protect resource servers, and implement OpenID Connect flows for modern, standards-based identity management.
Validate JSON Web Tokens for stateless REST APIs. Examine how authorisation servers issue access and refresh tokens, then apply token validation to service APIs.
This training is for Java developers and teams responsible for authentication and authorisation in Spring-based web applications or APIs.
Developers building REST APIs or web applications who need to implement and maintain secure authentication and authorisation.
Teams integrating login, resource-server security, or federated identity who need to understand the protocols and their Spring Security configuration.
Developers who want to understand the "why" behind Spring Security's defaults and how to extend or customise them safely.
All sessions are hands-on with real code exercises. We tailor content and pace to your team's experience level.
In Zürich, on-site at your office, or fully remote. We adapt exercises and tooling to your environment.
Typically 2 days. We can extend the course to cover advanced topics such as reactive security or microservice security patterns.
Delivered in English or German. Italian available on request.
Spring Boot experience and basic familiarity with HTTP and REST.
In Zürich, at your office anywhere in Switzerland or Europe, or fully remote.
Yes. We deliver the training in English or German – Italian is available on request. Course materials are in English.
Typically 2 days. We can extend the course to cover advanced topics such as reactive security or custom authentication providers.
Before each delivery, we align the material with the Spring Security and Spring Boot versions your team uses. We also cover the relevant migration path when your applications use older versions.
We deliver in-house, for up to 12 participants. The final price depends on group size, duration, and how much we tailor the content. Book a 30-minute call or email hello@42talents.com. We reply personally to emails within one business day.
Explore the other courses in our Spring training curriculum.
Build a practical foundation in the Spring Framework: IoC container, dependency injection, AOP, data access, and Spring MVC.
Tune startup time, reduce memory footprint, and compile to GraalVM native images.
Build LLM-backed applications with RAG pipelines, tool integration, and agentic workflows.
Tell us which capability your team needs to build. We'll shape the course around your stack, delivery goals, and current codebase.
In-house, up to 12 participants. Content tailored to your codebase and your stack.