Certification of Cloud Security Knowledge (CCSK Plus) on AWS – CCSK001
- Course Code : CCSK001
- Duration : 3 Days
- Price : 2,088 GBP
- Level: Intermediate
- Language: English
Course Content
-
Amazon SageMaker Studio provides a unified environment for data scientists to efficiently prepare, build, train, deploy, and monitor machine learning (ML) models. This course equips experienced data scientists with the skills to use SageMaker Studio’s purpose-built tools to enhance productivity throughout the ML lifecycle.
Delivery Method
- In-Person
- Online
- Private Team Training: Upskill your team with tailored training at your facility.
Certification Exam Information
- Format: Open Book
- Duration: 90 minutes
- Questions: 60 multiple-choice
- Passing Score: 80%
Have questions about this course?
Goals
In this course, you will learn to:
- Accelerate the ML lifecycle by leveraging SageMaker Studio for data preparation, model building, training, deployment, and monitoring.
Pre Requisites
While no formal work experience is required, familiarity with foundational security concepts such as firewalls, encryption, secure development, and identity & access management is beneficial.
Course Outline
Module 1: Cloud Architecture
- Introduction to cloud computing fundamentals, architectures, and virtualization.
- Cloud computing service and delivery models.
- The Shared Responsibility Model for cloud security.
- Topics Covered:
- Cloud definitions and architectures
- Essential cloud characteristics
- Cloud service and deployment models
- Shared responsibilities
Module 2: Infrastructure Security for Cloud
- Securing cloud components, networks, management interfaces, and administrator credentials.
- Virtual networking and workload security, including containers and serverless.
- Topics Covered:
- Cloud network security
- Software-defined networks
- Securing compute workloads
- Management plane security
- Business continuity and disaster recovery (BCDR)
Module 3: Managing Cloud Security and Risk
- Governance, risk assessment, and compliance for cloud computing.
- Legal and audit considerations, including discovery in the cloud.
- CSA tools like the CAIQ, CCM, and STAR registry.
- Topics Covered:
- Cloud governance and risk management
- Legal issues in cloud computing
- Compliance and audit requirements
Module 4: Data Security for Cloud Computing
- Information lifecycle management in the cloud and applying security controls.
- Managing encryption and customer-managed keys (BYOK).
- Topics Covered:
- Cloud data storage and lifecycle
- Encryption for IaaS, PaaS, and SaaS
- Key management and other data security options
Module 5: Application Security and Identity Management for Cloud Computing
- Identity management and securing cloud applications.
- Federated identity, secure development, and managing application security.
- Topics Covered:
- Secure software development lifecycle (SSDLC)
- DevOps and secure operations
- IAM standards and practical implementation
Module 6: Cloud Security Operations
- Evaluating, selecting, and managing cloud providers.
- The role of Security as a Service (SECaaS) providers and incident response.
- Topics Covered:
- Selecting a cloud provider
- SECaaS fundamentals and categories
- Incident response in cloud environments
- CCSK exam preparation
Hands-On Labs
- Initial Cloud Configuration: Configure a new cloud account with basic security controls like MFA, monitoring, and IAM.
- IAM and Monitoring: Implement advanced IAM with Attribute-Based Access Control and security alerting.
- Network and Instance Security: Create a secure virtual network (VPC) and launch a secure virtual machine with a vulnerability assessment.
- Encryption and Storage Security: Add encrypted storage volumes and secure snapshots.
- Application Security and Federation: Build a 2-tier application and implement federated identity with OpenID.
- Risk and Provider Assessment: Use CSA tools to evaluate risks and select a cloud provider.