Muutke küpsiste eelistusi

Secure APIs: Design, Build, and Implement [Kõva köide]

  • Formaat: Hardback, 376 pages, kõrgus x laius x paksus: 235x186x20 mm, kaal: 690 g
  • Ilmumisaeg: 01-Dec-2025
  • Kirjastus: Manning Publications
  • ISBN-10: 1633436632
  • ISBN-13: 9781633436633
  • Formaat: Hardback, 376 pages, kõrgus x laius x paksus: 235x186x20 mm, kaal: 690 g
  • Ilmumisaeg: 01-Dec-2025
  • Kirjastus: Manning Publications
  • ISBN-10: 1633436632
  • ISBN-13: 9781633436633
APIs are your apps front door. What if hackers already have the keys? Protect your APIs from modern cyber threats. Master OWASP Top 10 defenses with secure, scalable solutions. 





OWASP Top 10 guidance: Spot and eliminate the most critical API risks before attackers exploit them. 





API security by design: Integrate strong security principles into every stage of API architecture and development. 





Zero-trust security: Enforce strict access controls to minimize the impact of compromised credentials or services. 





Automated API testing strategies: Continuously validate security with tools and processes that detect vulnerabilities early.





Observability and monitoring for threat detection: Gain visibility into API behavior to identify and respond to intrusions quickly.

Secure APIs: Design, Build, and Implement by José Haro Peralta delivers a hands-on guide to building secure APIs. With Python-based examples and a clear focus on the OWASP Top 10, this book equips developers, architects, and security professionals with the knowledge and tools to defend against real-world API vulnerabilities.

Through practical examples, youll learn how to apply authentication and authorization best practices, enforce zero-trust security, and implement API gateway controls. The book addresses specific vulnerabilities, offering actionable solutions supported by code samples and testing strategies. Observability and monitoring techniques help to detect intrusions early and respond effectively.

By the end of this book, you will be able to design, deploy, and maintain strong APIs that are robust against attacks and compliant with security standards. It also protects your applications and your users.

Ideal for developers, software architects, cybersecurity professionals, and QA engineers who need practical, real-world API security solutions.

Arvustused

Overall, the book is a balanced mix of theoretical knowledge and hands-on advice, making it suitable for both newcomers to API security and seasoned professionals looking to deepen their expertise or get up to speed. 

Samer Hamad, Senior Security Engineer, Amazon 





A must-read for anyone working with APIs! This book offers a clear, comprehensive guide to API securityperfect for both beginners and experienced professionals. It covers everything from foundational concepts to advanced strategies, including challenges brought by AI-driven threats. Practical, well-structured, and highly relevant in todays cloud and hybrid environments. Highly recommended! 

Pradyumna Amasebail Kodgi, Product Manager, Oracle

1. WHAT IS API SECURITY? 
2. ALIGNING API SECURITY WITH YOUR ORGANIZATION 
3. API SECURITY PRINCIPLES 
4. TOP API AUTHENTICATION AND AUTHORIZATION VULNERABILITIES 
5. TOP API CONFIGURATION AND MANAGEMENT VULNERABILITIES 
6. API SECURITY BY DESIGN 
7. API AUTHORIZATION AND AUTHENTICATION 
8. IMPLEMENTING API AUTHENTICATION AND AUTHORIZATION 
9. SECURE API INFRASTRUCTURE 
10. FINANCIAL-GRADE APIS 
11. OBSERVABILITY FOR API SECURITY 
12. TESTING API SECURITY 
APPENDICES 
APPENDIX A: API SECURITY CHECKLIST 
APPENDIX B: SETTING UP AUTHO FOR AUTHENTICATION AND AUTHORIZATION 
APPENDIX C: API SECURITY RFCS AND LEARNING RESOURCES
José Haro Peralta is a consultant, instructor, and author of Microservice APIs, known for helping teams design secure and scalable API systems. With deep expertise in API architecture and security, he brings clear explanations and practical, real-world examples to every project. José distils his experience into actionable guidance that enables developers to build APIs resilient to modern threats. Hes also the founder of microapis.io and apithreats.com.