
Api development course
Master every stage of API development, from designing RESTful endpoints to securing, testing, and deploying production-grade services. This course covers the full stack of skills modern backend developers need, including authentication, documentation, performance optimisation, and microservices patterns. Whether you are building your first API or hardening an existing one, you will finish with real, deployable code.
What you will learn:
You will start with HTTP fundamentals and REST design principles, then move into building fully functional CRUD APIs connected to real databases. The course covers authentication with JWT and OAuth 2.0, API documentation using the OpenAPI specification, and comprehensive testing strategies including contract testing. You will also tackle security vulnerabilities from the OWASP API Security Top 10, implement rate limiting, and deploy containerised APIs to production environments. Advanced topics include GraphQL, webhooks, API gateways, and developer experience design.
How you study practically Api development course
How you practise Api development course
For companies looking to train their teams
With Dedika for businesses, the course includes exercises and examples tailored to your own business and the way your company needs.
Course content
8 Chapters • 40 LessonsDuration between 4 and 360 hours (you decide)
Chapter 1HideHide detailsSee detailsFoundations of API Development
Foundations of API Development
Lesson 1 • Data Formats for APIs
Introduces JSON, XML, and other common payload formats. Learners learn to read, write, and validate structured data exchanged by APIs.
Lesson 2 • Setting Up a Development Environment
Guides learners through installing tools needed to build and test APIs locally. Ensures a consistent, functional workspace before coding begins.
Lesson 3 • HTTP Protocol Essentials
Covers HTTP methods, status codes, headers, and the request-response cycle. Provides the transport-layer knowledge required for all subsequent chapters.
Lesson 4 • Core API Architectural Styles
Compares REST, SOAP, GraphQL, and RPC paradigms at a conceptual level. Helps learners choose the right style for a given problem.
Lesson 5 • What APIs Are and Why They Matter
Defines APIs, their role in software ecosystems, and the problems they solve. Establishes vocabulary used throughout the course.
Chapter 2HideHide detailsSee detailsDesigning RESTful APIs
Designing RESTful APIs
Lesson 1 • HTTP Methods and CRUD Mapping
Maps create, read, update, and delete operations to appropriate HTTP methods. Reinforces correct method semantics and idempotency rules.
Lesson 2 • Request and Response Design
Covers payload structure, status code selection, and header usage for requests and responses. Ensures APIs communicate intent clearly to consumers.
Lesson 3 • Resource Modelling and URL Design
Explains how to identify resources, name them correctly, and map them to URLs. Lays the structural foundation for a coherent API surface.
Lesson 4 • Filtering, Sorting, and Pagination
Introduces query parameter patterns for navigating large data sets. Learners implement pagination strategies that balance performance and usability.
Lesson 5 • API Versioning Strategies
Explores URL, header, and media-type versioning approaches. Learners evaluate trade-offs and select a strategy that supports long-term API evolution.
Chapter 3HideHide detailsSee detailsBuilding Your First REST API
Building Your First REST API
Lesson 1 • Manual Testing with API Clients
Uses API client tools to send requests and inspect responses for every endpoint. Builds a habit of verifying behaviour before writing automated tests.
Lesson 2 • Project Scaffolding and Routing
Sets up a server application, defines routes, and maps them to handler functions. Establishes the structural skeleton for the API project.
Lesson 3 • Input Validation and Error Handling
Adds validation logic and structured error responses to every endpoint. Prevents bad data from entering the system and communicates failures clearly.
Lesson 4 • Implementing CRUD Endpoints
Builds create, read, update, and delete handlers with real logic. Connects HTTP operations to in-memory or database-backed data stores.
Lesson 5 • Connecting to a Database
Integrates a relational or document database into the API project. Learners perform queries and map database results to API responses.
Chapter 4HideHide detailsSee detailsAPI Authentication and Authorisation
API Authentication and Authorisation
Lesson 1 • OAuth 2.0 Authorisation Framework
Introduces OAuth 2.0 grant types and the roles of authorisation server, resource server, and client. Learners integrate a third-party OAuth flow into their API.
Lesson 2 • JSON Web Tokens (JWT)
Explains JWT structure, signing, and verification for stateless authentication. Learners issue tokens on login and validate them on protected routes.
Lesson 3 • Authentication vs. Authorisation Concepts
Clarifies the distinction between proving identity and granting permissions. Frames the security model learners will implement in subsequent sections.
Lesson 4 • API Keys and Basic Authentication
Implements simple credential-based schemes suitable for server-to-server use. Learners understand their limitations before moving to token-based methods.
Lesson 5 • Role-Based Access Control
Implements permission checks that restrict endpoints based on user roles. Connects authorisation logic to the JWT and OAuth flows already built.
Chapter 5HideHide detailsSee detailsAPI Documentation and Contracts
API Documentation and Contracts
Lesson 1 • Schema Design with JSON Schema
Covers JSON Schema syntax for defining data models used in OpenAPI specs. Enables precise validation and documentation of every payload field.
Lesson 2 • API Change Management and Changelogs
Establishes practices for communicating breaking and non-breaking changes to API consumers. Connects versioning strategy from Chapter 2 to documentation workflows.
Lesson 3 • Generating Interactive API Documentation
Uses tooling to render OpenAPI specs as browsable, try-it-out documentation. Learners publish docs that developers can use to explore and test the API.
Lesson 4 • Code-First vs. Design-First Workflows
Compares generating specs from code annotations versus writing specs before coding. Learners evaluate which workflow fits their team's development process.
Lesson 5 • OpenAPI Specification Fundamentals
Introduces the OpenAPI document structure, including paths, operations, and components. Learners write a minimal valid spec for an existing API.
Chapter 6HideHide detailsSee detailsTesting and Quality Assurance for APIs
Testing and Quality Assurance for APIs
Lesson 1 • Unit Testing Business Logic
Isolates and tests individual functions, validators, and service modules. Ensures core logic is correct independent of HTTP or database layers.
Lesson 2 • Integration Testing API Endpoints
Sends real HTTP requests to a running test server and asserts on responses. Validates that routing, middleware, and database layers work together correctly.
Lesson 3 • Testing Strategy and Pyramid
Introduces the testing pyramid and maps test types to API layers. Provides a framework for deciding how many tests of each type to write.
Lesson 4 • Automated Testing in CI Pipelines
Configures a continuous integration pipeline to run the full test suite on every commit. Ensures quality gates block broken code from reaching production.
Lesson 5 • Contract Testing with Consumer-Driven Tests
Introduces consumer-driven contract testing to verify provider APIs meet consumer expectations. Prevents integration failures caused by uncoordinated API changes.
Chapter 7HideHide detailsSee detailsAPI Security Best Practices
API Security Best Practices
Lesson 1 • Input Sanitisation and Injection Prevention
Covers techniques to neutralise injection attacks targeting SQL, NoSQL, and command interpreters. Builds on validation skills from Chapter 3 with a security focus.
Lesson 2 • Secrets Management and Secure Configuration
Establishes practices for storing credentials, keys, and config values outside source code. Prevents accidental exposure of sensitive data in repositories or logs.
Lesson 3 • Rate Limiting and Throttling
Implements request rate limits to protect APIs from abuse and denial-of-service attacks. Learners configure limits at the endpoint and client levels.
Lesson 4 • Transport Security and HTTPS
Enforces encrypted transport for all API traffic and configures secure TLS settings. Prevents eavesdropping and man-in-the-middle attacks on API communications.
Lesson 5 • OWASP API Security Top Risks
Surveys the most common and impactful API security vulnerabilities identified by the security community. Provides a risk-based framework for prioritising security work.
Chapter 8HideHide detailsSee detailsAPI Performance, Scaling, and Deployment
API Performance, Scaling, and Deployment
Lesson 1 • Observability: Logging, Metrics, and Tracing
Instruments the API with structured logs, metrics, and distributed traces. Enables rapid diagnosis of production issues and informed capacity planning.
Lesson 2 • Performance Profiling and Bottleneck Analysis
Measures API response times and identifies slow queries, blocking I/O, and inefficient code. Establishes a baseline before applying optimisations.
Lesson 3 • Asynchronous Processing and Queues
Offloads long-running tasks to background workers via message queues. Improves API responsiveness by decoupling request handling from heavy processing.
Lesson 4 • Containerisation and Deployment
Packages the API into a container image and deploys it to a cloud or on-premises environment. Ensures consistent, reproducible deployments across all environments.
Lesson 5 • Caching Strategies for APIs
Applies HTTP caching headers and server-side caches to reduce redundant computation. Learners implement cache invalidation strategies that keep data consistent.
Your valid completion certificate
This course is for you:
Junior backend developers: ready to move beyond tutorials into real projects.
Frontend developers: wanting to build and own their own server-side services.
Computer science students: bridging the gap between coursework and industry practice.
QA engineers: looking to understand APIs deeply enough to test them thoroughly.
Freelance developers: needing to deliver secure, documented APIs to paying clients.
Career changers from IT support: transitioning into software development through backend work.
What our students say
Your lessons are perfect. I purchased the one-year package and finally have the opportunity to follow various topics of my interest without needing to change platforms... I thank you for everything you do, I've already recommended you to other people...

I like how the lessons are straight to the point and how I can change chapters and skip content I don't need.

I like the content and the way videos are presented and transcribed, which speeds up the process!

The platform is fast, simple to use. The diversity of content and complementary videos help a lot with learning.

Top training programmes
FAQ
Who is Dedika?
Is the certificate valid in Kenya?
Are the courses free?
What is the course workload?
What are the courses like?
How do the courses work?
What is the duration of the courses?
What is the cost or price of the courses?
What is an EAD or online course and how does it work?
PDF Course




















