Audit API Governance Across a Tier-1 Bank's Integration Estate
Overview
What this challenge is about.
Inventory the API estate using a combination of Swagger/OpenAPI scrapes (where present) and stakeholder interviews. Build a scorecard covering: spec completeness, auth scheme, versioning policy, deprecation discipline, rate limiting, observability, data classification. Score each API on a 0-100 scale. Identify the top 3 systemic gaps and the 10 highest-risk APIs. Propose a governance program: API style guide, federated review model (not central choke point), a 90-day inventory-to-classification sprint, and tooling (likely Stoplight + Apigee). Deliver the audit report and the 6-month roadmap.
The Brief
What you'll do, and what you'll demonstrate.
Audit 340+ APIs across 6 product divisions, build a governance scorecard, and propose a 6-month program that meets DORA inventory requirements.
Earning criteria — what you'll demonstrate
- Inventory a large API estate using spec scraping + stakeholder interviews
- Build a governance scorecard covering spec, auth, versioning, and observability
- Distinguish federated vs centralized governance models for large orgs
- Map governance program to a regulatory deadline (DORA)
Program Fit
Where this fits in your program.
Sharpens the same skills your degree expects you to demonstrate.
Skills
Skills you'll demonstrate.
Each one shows up on your verified credential.
Careers
Roles this prepares you for.
Real titles. Real skill bridges. Pick the one closest to your trajectory.
Career mappings coming soon.