Course Outline
DAY 1
Foundations and Cloud Architecture
- Defining cloud computing concepts
- Components of the cloud computing stack
- Cloud reference models and security principles
Infrastructure Security in Cloud Environments
- Identifying cloud infrastructure components
- Evaluating the security implications of various deployment models
- Benefits and drawbacks of virtualization
- The cloud management plane
- Security fundamentals across different service models
Governance and Risk Management in Cloud Computing
- Risk assessment and governance frameworks
- Legal and compliance considerations
- Auditing processes
- Data portability and interoperability
- Incident response strategies
Data Security in the Cloud
- Variations in cloud storage models
- Security challenges related to cloud data
- Integrating cloud security with governance
- Applying data lifecycle management to practical use cases
- Overview of data encryption techniques
Application and User Security
- Application architecture design and operational lifecycle
- Impact on the Software Development Life Cycle (SDLC)
- Evaluation of application security tools
- The role of compliance in cloud environments
Cloud Risk Assessment
- Adopting cloud computing strategies
- Migrating existing applications and systems
Establishing and Securing a Public Cloud
- Analyzing public IaaS architectures
- Examining EC2 components
- Deploying and connecting to initial instances
- Methods for securing cloud instances
DAY 2
Encryption of EBS Volumes
- Rationale for encryption
- Selecting appropriate encryption methods
- Creating and attaching Amazon EBS volumes
- Encryption and formatting procedures
- Key management options
- Implications of system reboots
- Connecting encrypted volumes to additional instances
Identity and Access Management
- Securing EC2 instances using AWS IAM
- Understanding federated identity architectures
- Implementing federated identity for applications via OpenID
- Applying these principles to enterprise production environments
Deployment and Security of Private Clouds
- Analyzing private cloud architectures
- Reviewing OpenStack components
- Creating and connecting compute nodes
- Managing OpenStack tenants and IAM
- Hardening the OpenStack management plane
- Investigating hypervisor security
- Understanding security automation
Selecting Cloud Services
- Formulating security strategies
- Choosing a cloud service provider
- Security as a Service (SECaaS)
- Course summary and review
Testimonials (7)
A wide range of knowledge of the lecturer.
Marcin Szklarski - Santander Consumer Bank
Course - CCSK Plus (Certificate of Cloud Security Knowledge - Plus)
The presenter knowledge, way of speaking, sense of humour.
Rafal Kosz - EY
Course - CCSK Plus (Certificate of Cloud Security Knowledge - Plus)
Open discussions
Krzysztof Pytko - EY
Course - CCSK Plus (Certificate of Cloud Security Knowledge - Plus)
Trainer was calm, we had enough time to go through the subjects.
Andrzej Tarczynski - EY
Course - CCSK Plus (Certificate of Cloud Security Knowledge - Plus)
I enjoyed the trainer methods to attract our attention.
Antonio Osuna Sanchez - Blue Indico Investments, S.L.U.
Course - CCSK - Certificate of Cloud Security Knowledge - Plus
Ahmed was always trying to keep attention of us.
Alberto Brezmes - Blue Indico Investments, S.L.U.
Course - CCSK - Certificate of Cloud Security Knowledge - Plus
The trainer was very nice and available. I appreciated his knowledge, skills and preparation about the subject. Furthermore, he provided us extra content about IoT, very interesting.