As powerful as cloud computing is for the organization, understanding its information security risks and mitigation strategies is critical. Legacy approaches are inadequate, and organizations need competent, experienced professionals equipped with the right cloud security knowledge and skills to be successful. They need CCSPs. Backed by the two leading non-profits focused on cloud and information security, the Cloud Security Alliance (CSA) and (ISC)², the CCSP credential denotes professionals with deep-seated knowledge and competency derived from hands-on experience with cyber, information, software and cloud computing infrastructure security. CCSPs help you achieve the highest standard for cloud security expertise and enable your organization to benefit from the power of cloud computing while keeping sensitive data secure.
During this training you will:
Lecture based, Self-Study & Classroom Discussions.
The CCSP credential is designed for experienced information security professionals with at least five years of full-time IT experience, including three years of information security and at least one year of cloud security experience. The CCSP credential is suitable for mid-level to advanced professionals involved with IT architecture, web and cloud security engineering, information security, governance, risk and compliance, and even IT auditing.
CCSP is most appropriate for those whose day-to-day responsibilities involve procuring, securing and managing cloud environments or purchased cloud services. In other words, CCSPs are heavily involved with the cloud. Many CCSPs will be responsible for cloud security architecture, design, operations, and/or service orchestration.
Example job functions include, but are not limited to:
Enterprise Architect, Security Administrator, Systems Engineer, Security Architect, Security Consultant, Security Engineer, Security Manager, Systems Architect
Experienced information security professionals with at least five years of IT experience, including three years of information security and at least one year of cloud security experience.
CCSP is a global credential born from the expertise of the two industry-leading stewards of information systems and cloud computing security, (ISC)² and CSA. The CCSP credential is appropriate and applicable to cloud security in a global environment. This is especially important given the legal, regulatory and compliance concerns that come with multi-jurisdictional housing of personally identifiable information (PII).
For those who qualify, the CCSP exam will test their competence in the six CCSP domains of the (ISC)² Common Body of Knowledge (CBK), which cover:
The CCSP draws from a comprehensive, up-to-date, global common body of knowledge that ensures security leaders have a deep knowledge and understanding of new threats, technologies, regulations, standards, and practices relating to the security & protection of the cloud.
The CCSP exam tests ones competence in the 6 domains of the CCSP CBK, which cover:
Understand Cloud Computing Concepts
Describe Cloud Reference Architecture
Understand Security Concepts Relevant to Cloud Computing
Understand Design Principles of Secure Cloud Computing
Identigy Trusted Cloud Services
Cloud Data Lifecycle
Design and Implement Cloud Data Storage Architectures
Design and Apply Data Security Strategies
and Implement Data Discovery and Classification Technologies
Design and Implement Data Rights Management
Design and Implement Relevant Jurisdictional Data Protections for Personally Identifiable Information (PIN)
Plan and Implement Data Retention, Deletion, and Archiving Policies
Design and Implement Auditability, Traceability, and Accountability of Data Events
Cloud Infrastructure Components
Risks Associated to Cloud Infrastructure
Design and Plan Security Controls
Plan Disaster Recovery and Business Continuity Management
Need for Training and Awareness in Application Security
Cloud Software Assurance and Validation
Use Verified Secure Software
Software Development Life-Cycle (SDLC) Process
Apply the Software Development Life-Cycle
Specifics of Cloud Application Architecture
Design Appropriate Identity and Access Management (IAM) Solutions
Support the Planning Process for the Data Center Design
Implement and Build Physical Infrastructure for Cloud Environment
Run Physical Infrastructure for Cloud Environment
Manage Physical Infrastructure for Cloud Environment
Build Logical Infrastructure for Cloud Environment
Run Logical Infrastructure for Cloud Environment
Manage Logical Infrastructure for Cloud Environment
Ensure Compliance with Regulations and Controls (ITIL, ISO/IEC 20000-I)
Conduct Risk Assessment to Logical and Physical Infrastructure
Collection, Acquisition, and Preservation of Digital Evidence
Manage Communication with Relevant Parties
Legal Requirements and Unique Risks within the Cloud Environment
Privacy Issues, Including Jurisdictional Variation
Audit Process, Methodologies, and Required Adaptions for a Cloud Environment
Implications of Cloud to Enterprise Risk Management
Outsourcing and Cloud Contract Design
Execute Vendor Management
Legal and compliance
This course and materials, along with previous experience and rigorous self-study, will help prepare you to take the (ISC)2 CCSP certification exam.
The CCSP exam voucher is included in this CCSP training.