Module 1: Cloud Basics and Models
- Evolution of infrastructure technology
- Virtualization and Hypervisor
- Introduction and Benefits of the cloud
- Shared model of cloud
- Service provided by cloud
- Challenges in cloud
Module 2: Deploy and Understand Compute and Configuration
- Secure Instance / Virtual Machine Deployment
- Host Configuration Management
- Manage Host Configuration
- Type of Cloud Storage: Disk for Compute 5 Application Security
- Threat Modelling overview
- Platform as a Service (PaaS)
- Container and Kubernetes
Module 3: Control Your Identity and Access Management
- Lifecycle for Identity and Access Management
- Concept of Cloud Account and Least privileges: Policies and Permissions, Groups and Roles, Temporary Credentials
- Secrets Management
- Customer Account Management and External Access
- Security Loopholes in Cloud IAM Services
- More IAM Best Practices
Module 4: Deploy and Monitor Network Resources
- Cloud Virtual Networking
- Network Segmentation
- Log Collection and Analysis
- Traffic Analysis of Cloud network
- Restricting Access to Network via JIT
- Cloud Logging Services
- Infrastructure as Code
- Network Protection Services: Service Endpoints and Private Endpoints
Module 5: Encrypt and Protect Data
- Lifecycle Management
- Storage Account
- Data Identification and Classification
- Cloud Access Security Brokers (CASB)
- Data Asset Management
- Cloud Service Encryption: Data at Rest Encryption, Data in Transit Encryption, Disk Level Encryption
Module 6: Detecting and Handling Cloud Incidents with Security Operation
- Cloud Based SIEM Models
- Security as a Service
- Understand How SOAR Accelerates Incident Response
- Understand Cloud Incident Response Lifecycle: Discuss Each Phase
Module 7: Basics of Penetration Testing and Forensic in Cloud
- Pen Testing in Cloud
- Scope of Cloud Pen Test
- Common Steps of Pen Testing
- Cloud Forensics
- Cloud Forensics Challenges
Module 8: Manage Business Continuity and Disaster Recovery
- Discuss Cloud Disaster Recovery and Business Continuity
- Main Element of BC/DR in cloud
- Learn to Design Disaster Recovery and Business Continuity in Cloud 3
Module 9: Handling Legal Issue and Policy in Cloud
- Understand the laws impacting cloud computing
- Learn the cloud computing standards
- Describe the legal frameworks for data protection and privacy
- Learn audit planning and reporting in the cloud
- Describe outsourcing and vendor management
Module 10: Manage GRC for the cloud
- Understand GRC in the cloud
- Discuss cloud governance
- Learn to implement and maintain governance for cloud computing
- Discuss risk management in the cloud
- Understand cloud compliance
- Learn to implement GRC in the cloud
- Understand risk management framework and process in the cloud