Course Outline
DAY 1
Overview and Cloud Architecture
- Establishing the definition of cloud computing
- Components of the cloud computing stack
- Cloud reference models and security considerations
Infrastructure Security in Cloud Environments
- Comprehending the elements of cloud infrastructure
- Evaluating the security impact of various deployment models
- Pros and cons of virtualization
- The cloud management plane
- Fundamentals of security across different service models
Oversight of Cloud Computing Security and Risk
- Risk management and governance frameworks
- Legal requirements and compliance
- Auditing processes
- Portability and interoperability standards
- Incident response protocols
Data Security in the Cloud
- Variations in cloud storage models
- Security challenges associated with cloud data
- Implementing cloud security and governance
- Applying data lifecycle management to practical cases
- Exploring data encryption techniques
Protecting Applications and Users
- Designing application architecture and operational lifecycles
- Examining the impact on the SDLC
- Analyzing application security tools
- Discussing the role of compliance in cloud environments
Cloud Risk Evaluation
- Adopting cloud computing technologies
- Migrating legacy applications and systems
Establishing and Securing a Public Cloud
- Gaining insight into public IaaS architectures
- Examining EC2 components
- Launching and connecting to an initial instance
- Acquiring skills to secure your instance
DAY 2
Encryption of EBS Volumes
- The rationale for encryption
- Choosing an appropriate method
- Creating and attaching Amazon EBS
- Encrypting and formatting the volume
- Grasping key management alternatives
- Understanding the impact of system reboots
- Attaching an encrypted volume to a separate instance
Identity and Access Management
- Learning how to protect EC2 instances using AWS IAM
- Understanding federated identity architectures
- Implementing federated identity for applications via OpenID
- Applying these principles within an enterprise production setting
Deployment and Security of a Private Cloud
- Comprehending private cloud architectures
- Reviewing OpenStack components
- Creating and linking a compute node
- Managing OpenStack tenants and IAM
- Securing the OpenStack management plane
- Exploring hypervisor security
- Understanding security automation
Choosing Cloud Services
- Developing a security strategy
- Selecting a suitable cloud provider
- Security as a Service (SecaaS)
- Conclusion and summary
Testimonials (7)
A wide range of knowledge of the lecturer.
Marcin Szklarski - Santander Consumer Bank
Course - CCSK Plus (Certificate of Cloud Security Knowledge - Plus)
The presenter knowledge, way of speaking, sense of humour.
Rafal Kosz - EY
Course - CCSK Plus (Certificate of Cloud Security Knowledge - Plus)
Open discussions
Krzysztof Pytko - EY
Course - CCSK Plus (Certificate of Cloud Security Knowledge - Plus)
Trainer was calm, we had enough time to go through the subjects.
Andrzej Tarczynski - EY
Course - CCSK Plus (Certificate of Cloud Security Knowledge - Plus)
I enjoyed the trainer methods to attract our attention.
Antonio Osuna Sanchez - Blue Indico Investments, S.L.U.
Course - CCSK - Certificate of Cloud Security Knowledge - Plus
Ahmed was always trying to keep attention of us.
Alberto Brezmes - Blue Indico Investments, S.L.U.
Course - CCSK - Certificate of Cloud Security Knowledge - Plus
The trainer was very nice and available. I appreciated his knowledge, skills and preparation about the subject. Furthermore, he provided us extra content about IoT, very interesting.