Loading...
Please wait a moment
Founded by passionate advocates of learning and innovation, Learni set out to make professional training accessible to everyone, everywhere in the world. Our team works in the largest cities such as Paris, Lyon, Marseille, and internationally, to support talents and organizations in their skills development.
Which format do you prefer?
30 free minutes with a training advisor — no commitment.
Loading available slots...
Discover how SAFe training enhances enterprise agility, key courses, benefits, and trends shaping implementations in March 2026. Prepare your organization for scalable success.
Cybersecurity training in Oklahoma City in December 2026 with Learni. Certified, expert trainers, eligible for employer funding. Free quote.
Professional Training training in Dallas in July 2026 with Learni. Certified, expert trainers, eligible for employer funding. Free quote.
Discover the best warehouse management and logistics training options scheduled for March 2026, focusing on emerging trends like AI automation, sustainability, and supply chain resilience to boost your career.
Don't let this gap widen
Sans CodeQL, 84% vulnérabilités code passent inaperçues, générant breaches coûtant 4,5M€ moyenne par incident (IBM 2023).
Équipes perdent 35% temps revues manuelles inefficaces, retardant déploiements 2x plus.
Entreprises sans SAST automatisé subissent 50% incidents sécurité en plus, risquant amendes RGPD millions euros.
Carrières stagnent : 70% postes DevSecOps exigent outils comme CodeQL 2024.
Chaque trimestre sans compétences creuse écart concurrents livrant logiciels sécurisés rapidement.
The Formation CodeQL - Détecter vulnérabilités code source entreprise training is delivered in-person or remotely (blended-learning, e-learning, virtual classroom, remote in-person). At Learni, a Qualiopi-certified training organization, each program is designed to maximize skills acquisition, regardless of the training mode chosen.
The trainer alternates between demonstrative, interrogative, and active methods (through practical exercises and/or real-world scenarios). This pedagogical approach ensures concrete and directly applicable learning in the workplace.
To ensure the quality of the Formation CodeQL - Détecter vulnérabilités code source entreprise training, Learni provides the following teaching resources:
For in-house training at a location external to Learni, the client ensures and commits to having all necessary teaching materials (IT equipment, internet connection...) for the proper conduct of the training action in accordance with the prerequisites indicated in the communicated training program.
The assessment of skills acquired during the Formation CodeQL - Détecter vulnérabilités code source entreprise training is carried out through:
Learni is committed to the accessibility of its professional training programs. All our training programs are accessible to people with disabilities. Our teams are available to adapt teaching methods to your specific needs. Do not hesitate to contact us for any accommodation request.
Learni training programs are available for inter-company and intra-company settings, both in-person and remote. Registration is possible up to 48 business hours before the start of training. Our programs are eligible for OPCO, Pôle emploi, and FNE-Formation funding. Contact us to discuss your training project and funding possibilities.
Installation environnement CodeQL via GitHub CLI et extension VS Code, exploration bases données prêtes pour JavaScript Java Python, rédaction queries simples identifiant sources sinks vulnérabilités, exercices pratiques sur code source réel entreprise, interprétation premiers résultats, génération rapports basiques, mise en place projet fil rouge personnel.
Plongée queries avancées modélisant flux données dangereuses, construction analyses taint tracking multi-étapes, personnalisation packs queries pour langages spécifiques, ateliers pratiques détection injections SQL XSS buffer overflows, débogage queries inefficaces avec visualiseur CodeQL, optimisation performances sur grands dépôts, consolidation compétences via cas concrets sécurité.
Configuration scans CodeQL dans workflows GitHub Actions, intégration Advanced Security pour alertes push PR, adaptation pipelines existants entreprises, tests automatisés variant seuils criticité, exercices déploiement scans baselines multi-projets, monitoring dashboards résultats réels temps, résolution faux positifs suppressions règles, valeur immédiate DevSecOps shift-left.
Analyse projet fil rouge complet avec queries custom, priorisation alertes impact business, rédaction packs queries réutilisables équipe, export SARIF intégration outils tiers Jira Slack, simulations audits sécurité OWASP Top 10, revue code pair-programming formateur, production livrable plan remédiation, certification compétences via soutenance pratique.
Target audience
Ingénieurs sécurité, développeurs DevSecOps, responsables qualité logicielle pour montée en compétences analyse statique
Prerequisites
Connaissances développement logiciel (Java, JavaScript, Python), GitHub, bases requêtes SQL
Loading...
Please wait a moment





























