Course Outline
DAY 1
Overview and Cloud Architecture
- Establish definitions of cloud computing
- Analyze components within the cloud computing stack
- Examine the cloud reference model and associated security frameworks
Infrastructure Security for Cloud Computing
- Identify core components of cloud infrastructure
- Evaluate security implications across various deployment models
- Evaluate the advantages and disadvantages of virtualization technologies
- Assess the cloud management plane
- Determine foundational security principles for distinct service models
Managing Cloud Computing Security and Risk
- Conduct risk and governance assessments
- Navigate legal and regulatory compliance requirements
- Execute audit procedures
- Ensure portability and interoperability standards
- Develop incident response protocols
Data Security for Cloud Environments
- Evaluate distinct cloud storage architectures
- Identify security vulnerabilities related to data within cloud ecosystems
- Implement cloud security and governance controls
- Apply data lifecycle management to specific use cases
- Outline data encryption methodologies
Securing Applications and Users
- Review application architecture design and operational lifecycles
- Assess impacts on the Secure Software Development Life Cycle (SDLC)
- Evaluate application security tools and utilities
- Clarify the role of compliance in cloud operations
Cloud Risk Assessment
- Facilitate the adoption of cloud computing strategies
- Plan migration of existing applications and systems
Create and Secure a Public Cloud Environment
- Analyze public Infrastructure as a Service (IaaS) architectures
- Review Elastic Compute Cloud (EC2) components
- Launch and establish connectivity to initial instances
- Implement instance hardening and security measures
DAY 2
Encrypting an EBS Volume
- Justify the necessity of encryption
- Select appropriate encryption methodologies
- Provision and attach Amazon Elastic Block Store (EBS) volumes
- Perform encryption and formatting operations
- Evaluate key management options
- Analyze impacts of system reboots on encryption
- Attach encrypted volumes to additional instances
Identity and Access Management
- Secure EC2 resources using AWS Identity and Access Management (IAM)
- Evaluate federated identity architectures
- Implement federated identity solutions for applications using OpenID
- Apply operational principles to enterprise production environments
Deploy and Secure a Private Cloud
- Analyze private cloud architecture designs
- Review OpenStack components
- Provision and connect compute nodes
- Manage OpenStack tenants and Identity and Access Management (IAM)
- Secure the OpenStack management plane
- Evaluate hypervisor security controls
- Implement security automation strategies
Selecting Cloud Services for government
- Enable comprehensive security strategy
- Select an appropriate cloud provider
- Evaluate Security as a Service (SECaaS) offerings
- Conduct summary and review for government stakeholders
Testimonials (7)
A wide range of knowledge of the lecturer.
Marcin Szklarski - Santander Consumer Bank
Course - CCSK Plus (Certificate of Cloud Security Knowledge - Plus)
The presenter knowledge, way of speaking, sense of humour.
Rafal Kosz - EY
Course - CCSK Plus (Certificate of Cloud Security Knowledge - Plus)
Open discussions
Krzysztof Pytko - EY
Course - CCSK Plus (Certificate of Cloud Security Knowledge - Plus)
Trainer was calm, we had enough time to go through the subjects.
Andrzej Tarczynski - EY
Course - CCSK Plus (Certificate of Cloud Security Knowledge - Plus)
I enjoyed the trainer methods to attract our attention.
Antonio Osuna Sanchez - Blue Indico Investments, S.L.U.
Course - CCSK - Certificate of Cloud Security Knowledge - Plus
Ahmed was always trying to keep attention of us.
Alberto Brezmes - Blue Indico Investments, S.L.U.
Course - CCSK - Certificate of Cloud Security Knowledge - Plus
The trainer was very nice and available. I appreciated his knowledge, skills and preparation about the subject. Furthermore, he provided us extra content about IoT, very interesting.