Guided Learning Paths
Deliberate sequences through the articles, references, and tools that already exist in the Knowledge Center — ordered so each step builds on the last. Six paths, from application security foundations to secure SDLC planning.
Available Now
Application Security Foundations
The starting sequence for engineers who are new to application security at Strata — what gets measured, against which standards, and where the platform's own reasoning about priority comes from.
Engineering Manager AppSec
For managers, directors, and CTOs who need to report on application security risk and prioritize a backlog without necessarily writing the fixes themselves.
Mobile Application Security
A practical sequence for engineers reviewing an Android or iOS application — from the category overview through the specific standards and CWEs, to a hands-on interactive review.
Repository and CI/CD Security
A sequence covering both a repository's own security posture and the pipeline that builds and deploys from it — two categories that are usually reviewed together because a pipeline typically holds more privilege than what it deploys.
Vulnerability Prioritization
A focused sequence on the specific question of what to fix first — the standards involved, why severity alone is an incomplete answer, and a tool to apply the reasoning to a real finding.
Secure SDLC Planning
For engineers and leads designing or refreshing a secure development process — grounded in the ASVS verification standard and existing repository/CI/CD guidance rather than a generic checklist.