Course Outline
DAY 1
Introduction and Cloud Architecture
- Defining the concepts of cloud computing
- Components of the cloud computing stack
- Cloud reference models and security considerations
Infrastructure Security for Cloud Computing
- Comprehending the elements of cloud infrastructure
- Evaluating the security impacts of various deployment models
- Benefits and drawbacks of virtualization
- The cloud management plane
- Security fundamentals across different service models
Managing cloud computing security and risk
- Risk management and governance
- Legal and compliance frameworks
- Auditing processes
- Portability and interoperability standards
- Incident response protocols
Data security for cloud
- Variations in cloud storage models
- Security challenges related to cloud data
- Implementing cloud security and governance strategies
- Applying the data lifecycle to specific use cases
- Examining data encryption methods
Securing applications and users
- Application architecture design and the operational lifecycle
- Analyzing the impact on the Software Development Life Cycle (SDLC)
- Reviewing application security toolsets
- Exploring the role of compliance within the cloud
Cloud Risk assessment
- Adopting cloud computing strategies
- Migrating legacy applications and systems
Create and secure a public cloud
- Understanding public IaaS architectures
- Examining EC2 components
- Launching and connecting to an initial instance
- Acquiring skills to secure an instance
DAY 2
Encrypting an EBS volume
- Rationale for encryption
- Selecting an appropriate encryption method
- Provisioning and attaching Amazon EBS
- Performing encryption and formatting
- Exploring key management options
- Understanding the implications of rebooting
- Attaching encrypted volumes to alternate instances
Identity and access management
- Securing EC2 instances using AWS IAM
- Comprehending federated identity architectures
- Implementing federated identity for applications via OpenID
- Applying these principles to enterprise production environments
Deploy and secure a Private Cloud
- Understanding private cloud architecture
- Reviewing OpenStack components
- Creating and connecting a compute node
- Administering OpenStack tenants and IAM
- Securing the OpenStack management plane
- Investigating hypervisor security
- Understanding security automation
Selecting Cloud services
- Enabling security strategy
- Choosing a cloud provider
- Security as a service models
- Concluding summary and review
Testimonials (7)
A wide range of knowledge of the lecturer.
Marcin Szklarski - Santander Consumer Bank
Course - CCSK Plus (Certificate of Cloud Security Knowledge - Plus)
The presenter knowledge, way of speaking, sense of humour.
Rafal Kosz - EY
Course - CCSK Plus (Certificate of Cloud Security Knowledge - Plus)
Open discussions
Krzysztof Pytko - EY
Course - CCSK Plus (Certificate of Cloud Security Knowledge - Plus)
Trainer was calm, we had enough time to go through the subjects.
Andrzej Tarczynski - EY
Course - CCSK Plus (Certificate of Cloud Security Knowledge - Plus)
I enjoyed the trainer methods to attract our attention.
Antonio Osuna Sanchez - Blue Indico Investments, S.L.U.
Course - CCSK - Certificate of Cloud Security Knowledge - Plus
Ahmed was always trying to keep attention of us.
Alberto Brezmes - Blue Indico Investments, S.L.U.
Course - CCSK - Certificate of Cloud Security Knowledge - Plus
The trainer was very nice and available. I appreciated his knowledge, skills and preparation about the subject. Furthermore, he provided us extra content about IoT, very interesting.