hands-on coding · Cohort evenings
Java Security Modules for Enterprise SSO
OAuth2 resource servers, JWT validation, and custom converters mapped to internal directory claims.
- Duration
- 5 weeks · 50 mentor hours
- Schedule
- Evenings
- Level
- Advanced
- Price
- 15,600 THB (informational)
Spring Security · WireMock · JUnit 5
Description
We integrate with a mock OIDC provider mirroring Azure AD field shapes. You wire JwtDecoder customizations, test clock skew, and build policy assertions for multi-tenant headers common in Bangkok HQ setups.
What arrives in your repo
- Spring Authorization Server lab (trimmed)
- Custom JwtAuthenticationConverter
- Multi-tenant resolver patterns
- Postman/Newman contract suite
- Brute-force throttle simulation
- Audit hooks for PDPA-sensitive fields
- Threat modeling worksheet
Outcomes we expect you to evidence
- Ship a policy matrix linking scopes to roles
- Automate negative-path JWT tests
- Prepare SOC-ready audit snippets
Responsible instructor
Niran Saelim
Identity architect for ASEAN retail groups.
FAQ
We stay vendor-neutral; Azure field names appear as examples only.
Out of scope — APIs only.
Completion certificate only.
Experience notes
“Java Security Modules for Enterprise SSO converter lab clarified how our Bangkok HQ claim drift happened.”
“Policy matrix template is now our onboarding doc.”