DevOps Zero-to-Hero
A five-tier mastery path — Foundation to Specialist — across the whole DevOps toolchain: Git, YAML, CI/CD, artifacts, security scanning, deployment strategies, GitOps, agents, observability and platform engineering.
Start the courseA complete, job-oriented path through DevOps: culture and DORA, YAML, Git, CI/CD pipelines with quality gates, artifact repositories, DevSecOps (SAST/DAST/SCA, supply-chain security), deployment strategies and progressive delivery, GitOps, agents/runners, observability, and internal developer platforms — built from production-grade lessons.
What you’ll be able to do
- Build CI/CD pipelines as code with stages, quality gates and artifacts
- Master deployment strategies — rolling, blue/green, canary, progressive delivery and feature flags
- Implement DevSecOps — SAST/DAST/SCA, supply-chain security and policy-as-code
- Run GitOps with Argo CD/Flux and scale agents/runners
- Instrument delivery with DORA metrics and observability
- Build an internal developer platform and be certification-ready
Prerequisites
- Basic IT literacy, a terminal, and Git basics
- A free GitHub/GitLab account and a cloud account for the hands-on labs
Who it’s for
Developers and sysadmins moving into DevOps, engineers building CI/CD and platforms, and people preparing for cloud DevOps or Kubernetes certifications.
Curriculum
Tier 1 · Foundation — DevOps Culture, CI/CD & YAML
Start at zero: DevOps culture, the lifecycle, DORA metrics, and the YAML that underpins every pipeline.
Tier 2 · Intermediate — CI/CD Pipelines & Artifacts
Build the pipeline: stages & gates, reusable workflows, GitLab/Jenkins/Azure DevOps, and artifact repositories.
- 4 CI/CD Pipeline Design: Stages, Quality Gates, Artifacts & Security Scans
- 5 Building a Reusable GitHub Actions Platform: Composite Actions, Reusable Workflows, and Org-Wide Standards
- 6 Build a GitLab CI Pipeline with DAG Stages, Distributed Cache, and Review App Environments
- 7 Building a Scalable Jenkins Pipeline Platform with Shared Libraries and JCasC
- 8 Designing Multi-Stage Azure DevOps YAML Pipelines with Environments, Approvals, and Deployment Gates
- 9 Deploy Nexus Repository for Maven, npm, and Docker Proxy and Hosted Repositories
- 10 Operating Harbor as an Enterprise Artifact Registry: Projects, Replication, and Vulnerability Gating
Tier 2 · Intermediate — Versioning & Dependency Automation
Automate the boring parts: semantic release, dependency updates, and trunk-based development.
Tier 3 · Advanced — Deployment Strategies & Progressive Delivery
Release safely: rolling/blue-green/canary, Argo Rollouts, blue-green slots, feature flags and Spinnaker.
- 14 Deployment Strategies: Rolling, Blue/Green, Canary, Progressive Delivery & Rollback
- 15 Blue-Green on Kubernetes with Argo Rollouts: Preview Services, Analysis Gates, and Automated Promotion
- 16 Progressive Delivery on Kubernetes with Argo Rollouts: Canary, Analysis, and Automated Rollback
- 17 Zero-Downtime Blue-Green Deployments on Azure: App Service Slots, Front Door, and Pipeline Automation
- 18 Building a Vendor-Neutral Feature Flag Platform with OpenFeature and flagd
- 19 Multi-Cloud Deployment Pipelines with Spinnaker and Automated Canary Analysis
Tier 3 · Advanced — GitOps & Cloud-Native Pipelines
Declarative delivery: Argo CD, Flux, Tekton and Argo Workflows.
- 20 Scaling GitOps with Argo CD: App-of-Apps, ApplicationSets, and Multi-Cluster Fan-Out
- 21 Flux CD GitOps at Scale: Monorepo Structure, Kustomize Overlays, and Multi-Tenancy
- 22 Cloud-Native CI with Tekton Pipelines and Signed Provenance via Tekton Chains
- 23 Set Up Argo Workflows and Argo Events for CI Pipelines and Batch DAGs on Kubernetes
Tier 3 · Advanced — DevSecOps & Supply Chain
Shift security left: SAST/DAST/SCA gates, OPA, Sigstore/SLSA supply chain, Vault, Snyk and SonarQube.
- 24 Building a DevSecOps Pipeline: Wiring SAST, SCA, Secrets, and IaC Scanning with Risk-Based Gates
- 25 Policy-as-Code Guardrails with OPA Gatekeeper: Constraint Templates, Mutation, and CI Gating
- 26 Keyless Artifact Signing with Sigstore Fulcio and Enforcing Provenance at Admission
- 27 Securing the Software Supply Chain: SBOMs, Sigstore Signing, and SLSA Provenance in CI/CD
- 28 Dynamic Secrets in CI/CD with HashiCorp Vault: Short-Lived Cloud and Database Credentials
- 29 Integrate Snyk into GitHub Actions for SCA, Container, and IaC Pull-Request Gating
- 30 Set Up SonarQube on Kubernetes with PostgreSQL and Quality Gate Enforcement in CI
Tier 3 · Advanced — Agents, Runners & Build Supply Chain
Run pipelines at scale: ephemeral self-hosted runners, ARC autoscaling, hardened agents, and reproducible builds.
- 31 Running Secure, Autoscaling Ephemeral CI Runners on Kubernetes (GitHub ARC and Azure DevOps Agents)
- 32 Azure DevOps Scale Set Agents: Ephemeral Pools, Autoscaling, and Pipeline Hardening
- 33 Configure GitHub Actions Self-Hosted ARC Runners with Karpenter Autoscaling
- 34 Fast, Reproducible, Multi-Arch Builds with BuildKit Remote Cache and SBOM Attestations
Tier 4 · Expert — Platform Engineering & Internal Developer Platforms
Build the paved road: Backstage and Port internal developer portals with self-service.
Tier 5 · Specialist — Multi-Cloud & Regulated Delivery
Deliver across clouds under controls: regulated GitOps pipelines, policy-gated delivery, and keyless multi-cloud deploys.
Track · Troubleshooting (Easy → Complex)
Diagnose anything: builds, pipelines/YAML, runners, artifacts and deployments.
Track · Architecting (Easy → Complex)
Turn requirements into delivery platforms: a six-rung ladder from a single pipeline to an IDP.
Track · Certification Center
Pass the exams: the DevOps prep kit across cloud DevOps, Terraform, Kubernetes and tool certs.
Track · Job-Ready — Projects
Get hired: a six-project portfolio ladder from a first pipeline to an internal developer platform.