Course Outline
DAY 1
Introduction and Cloud Architecture
- Definition of cloud computing
- Components of the cloud computing stack
- Cloud reference models and security
Infrastructure Security for Cloud Computing
- Comprehending cloud infrastructure components
- Evaluating security impacts of deployment models
- Pros and cons of virtualization
- Cloud management plane
- Security fundamentals for various service models
Managing cloud computing security and risk
- Risk and governance
- Legal and compliance requirements
- Auditing practices
- Portability and interoperability
- Incident response strategies
Data security for cloud
- Variations in cloud storage models
- Data security challenges in the cloud
- Aligning cloud security with governance
- Applying data lifecycle management to use cases
- Exploration of data encryption
Securing applications and users
- Application architecture design and operational lifecycle
- Impact on the Software Development Life Cycle (SDLC)
- Assessment of application security tools
- The role of compliance in cloud environments
Cloud Risk assessment
- Adoption of cloud computing
- Migrating existing applications and systems
Create and secure a public cloud
- Understanding public IaaS architectures
- Review of EC2 components
- Launching and connecting to your first instance
- Techniques for securing your instance
DAY 2
Encrypting an EBS volume
- Rationale for encryption
- Selection of encryption methods
- Creation and attachment of Amazon EBS
- Encryption and formatting processes
- Key management options
- Implications of system reboots
- Attaching encrypted volumes to other instances
Identity and access management
- Securing EC2 using AWS IAM
- Federated identity architectures
- Implementing federated identity via OpenID for applications
- Application of these principles in enterprise production settings
Deploy and secure a Private Cloud
- Private cloud architecture overview
- Review of OpenStack components
- Creation and connection of compute nodes
- Management of OpenStack tenants and IAM
- Securing the OpenStack management plane
- Hypervisor security investigation
- Understanding security automation
Selecting Cloud services
- Establishing a security strategy
- Choosing a cloud provider
- Security as a service
- Concluding summary and review
Testimonials (7)
A wide range of knowledge of the lecturer.
Marcin Szklarski - Santander Consumer Bank
Course - CCSK Plus (Certificate of Cloud Security Knowledge - Plus)
The presenter knowledge, way of speaking, sense of humour.
Rafal Kosz - EY
Course - CCSK Plus (Certificate of Cloud Security Knowledge - Plus)
Open discussions
Krzysztof Pytko - EY
Course - CCSK Plus (Certificate of Cloud Security Knowledge - Plus)
Trainer was calm, we had enough time to go through the subjects.
Andrzej Tarczynski - EY
Course - CCSK Plus (Certificate of Cloud Security Knowledge - Plus)
I enjoyed the trainer methods to attract our attention.
Antonio Osuna Sanchez - Blue Indico Investments, S.L.U.
Course - CCSK - Certificate of Cloud Security Knowledge - Plus
Ahmed was always trying to keep attention of us.
Alberto Brezmes - Blue Indico Investments, S.L.U.
Course - CCSK - Certificate of Cloud Security Knowledge - Plus
The trainer was very nice and available. I appreciated his knowledge, skills and preparation about the subject. Furthermore, he provided us extra content about IoT, very interesting.