Security and Privacy by Design (SPbD)
This course from Junglemap aims to help development teams, architects and product owners understand how design decisions can affect security and data protection throughout a system's lifecycle.

Many risks tend to arise from how systems are designed, how data is handled, what is exposed, and the assumptions made about users and other systems.
Through practical examples, participants learn to identify risks early, make more secure design decisions, and think like an attacker, not only about what a system is intended to do, but what it could be made to do.
A practical understanding of how
- design decisions affect security and data protection
- attack surfaces, trust boundaries and data flows influence risk
- secure defaults and data minimisation can help reduce exposure
- APIs and system functionality can be restricted to reduce risk
- security is verified and maintained throughout the system lifecycle
The course supports the principles of data protection by design and by default under GDPR Article 25.
A complementary pairing
Security & Privacy by Design and our OWASP Top 10 course work well together. SPbD looks at how design decisions can affect security and data protection across a system's lifecycle, while OWASP Top 10 focuses on common vulnerabilities and how they might be prevented. Together, the two courses give teams a broad, practical foundation for developing more secure applications.
This course is currently available in English only.
When functionality becomes vulnerability
Define trust boundaries
It all starts with early decisions
Secure by default
Think in systems, not components
Control data flow
Attack surface is a design choice
Data minimisation
Limit API exposure
Verify and operate securely
Think like an attacker
Explore the rest of our courses

Secure coding with OWASP Top 10
This course from Junglemap helps developers understand and reduce the most critical security risks in web applications. Applications are complex, and many vulnerabilities arise from everyday development decisions. Cybercriminals do not focus on how an application is intended to work, but on how it can be misused. This course helps you recognise these risks and understand how to prevent them in practice.

Course in protection against AI manipulation
Our course on AI manipulation consists of short, 2–3-minute lessons on how we experience AI – both when we take the initiative ourselves and in situations where we may not even be aware of it. The course focuses on how AI technology is used by cybercriminals and the importance of keeping AI in mind in our daily lives.

Privacy & GDPR course for all employees
Our Privacy awareness training covers what all employees need to know about privacy and privacy legislations such as the GDPR. The course consists of 10 content lessons, surveys and repetition quizzes, all designed to build and reinforce knowledge about privacy all year around.

Information security awareness course for all employees
Our information security awareness training consists of 3-minute lessons on cyber security risks and how to counteract them, with topics such as social engineering, password and email safety, AI-manipulation, and how to avoid and handle ransomware attacks.


















