top of page
EC-Council Cloud Security Essentials

EC-Council Cloud Security Essentials

Course Code

Duration

ECC-CSE

3 days

About the Course

EC-Council's Cloud Security Essentials (CSE) is a foundational course covering cloud computing and security fundamentals, data protection and encryption in the cloud and more. This course prepares you to secure identities, data, and applications within cloud providers and hybrid infrastructures. No IT/cybersecurity experience is required for this course.


Skills you will learn from the CSE program


  • Learn the fundamentals of cloud computing and security.

  • Explore identity and access management in the cloud.

  • Learn about data protection and encryption in the cloud.

  • Gain knowledge of network security in cloud environments.

  • Dive deep into application security in cloud environments.

  • Gain insights on cloud security monitoring and incident response.

  • Explore cloud security risk assessment and management.

  • Understand the basics of cloud compliance and governance.


Target Audience


  • High school, college, and university students.

  • IT, technology, and cybersecurity teams with little or no prior work experience.

  • Anyone who wants to start a career in cybersecurity, cloud security, or network security and is interested in cloud technology.

  • Professionals securing public, private, and hybrid cloud infrastructures, identities, data, and applications.

  • IT professionals, system administrators, cloud administrators, cybersecurity operations and administrators, engineers, and architects.


Course Outline


Module 1: Cloud Computing and Security Fundamentals

This module will introduce you to the course and provide foundational information about cloud infrastructure and security.


Topics covered:

  • Cloud Computing Types and Service Models.

  • Cloud Security Challenges and Concerns.

  • Cloud and Security Responsibility.

  • Evaluating Cloud Service Providers.

  • Cloud Security Benefits.

  • Threats and Attacks in Cloud Environments.

  • Cloud Security Design Principles.

  • Cloud Security Architecture.


Module 2: Identity and Access Management (IAM) in the Cloud

This module will focus on the protection of identity and access management. This will include how to protect users and assign proper permissions.


Topics Covered:

  • IAM Fundamentals.

  • Principal and Roles of IAM in the Cloud.

  • Role-based Access Control (RBAC).

  • Identity Federation.

  • Single Sign-on (SSO) and Self-Service Password Reset (SSPR).

  • Multi-factor Authentication (MFA).

  • Principle of Least Privilege.

  • IAM Auditing and Monitoring.

  • Labs: Assign roles and enforce MFA in AWS, and implement roles and enforce MFA with conditional access policies in Azure.


Module 3: Data Protection and Encryption in the Cloud

This module will provide information on how to protect data from loss and unauthorized access.


Topics Covered:

  • Data Classification and Lifecycle.

  • Encryption Techniques (at Rest, in Transit).

  • Customer vs Cloud Provider Managed Keys.

  • Data Loss Prevention (DLP).

  • Backup and Disaster Recovery Strategies.

  • Lab: Set up KMS in AWS, set up Key Vault in Azure, and create DLP policies in Microsoft 365.


Module 4: Network Security in the Cloud

This module will teach you how to securely architect your network to protect again unauthorized access and detect potential network attacks.


Topics Covered:

  • Cloud Network Fundamentals.

  • Virtual Private Clouds (VPC).

  • Network Isolation and Segmentation.

  • Network Access Control Lists (NACLs) and Network Security Groups (NSG).

  • Remote Access and Connections.

  • Firewalls and Intrusion Detection.

  • Labs: Create a VPC and configure NACL and NSG in AWS, as well as create a VNET and configure an NSG in Azure.


Module 5: Application Security in the Cloud

This module will show you how to secure applications, web access, and databases in cloud environments.


Topics Covered:

  • Secure Software Development Lifecycle (SDLC) in the Cloud.

  • Web Application Firewall (WAF) in Cloud Environments.

  • Web Application Security and OWASP Top Ten.

  • Security by Design Principles for Cloud Applications.

  • Secure Coding Practices.

  • API Security and Integration Best Practices.

  • Serverless Security Considerations.

  • Container Security (Docker, Kubernetes).

  • Labs: Create an application gateway with WAF and create a WAF in AWS.


Module 6: Cloud Security Monitoring and Incident Response

This module will introduce you to the foundations of security operations, including logging activity and events, identifying threats and intrusions, and responding to incidents.


Topics Covered:

  • Cloud Logging.

  • Cloud Security Monitoring.

  • SIEM and SOAR.

  • Cloud-native Monitoring Solutions.

  • Continuous Security Monitoring Strategies.

  • Cloud Security Monitoring Best Practices.

  • Incident Response in Cloud.

  • Labs: Configure Microsoft Sentinel, configure workload protection for Microsoft Defender for Cloud, configure Guard Duty on AWS, and configure Security Hub on AWS.


Module 7: Cloud Security Risk Assessment and Management

This module will discuss the process of risk analysis, assessment, and management.


Topics covered:

  • Identifying Cloud Security Risks.

  • Risk Assessment Frameworks for Cloud Environments.

  • Cloud Security Controls and Countermeasures.

  • Threat Modeling and Vulnerability Assessment in Cloud Environments.

  • Quantitative vs Qualitative Risk Assessment Approaches.

  • Cloud Risk Treatment, Response, and Mitgation.


Module 8: Cloud Compliance and Governance

This module will discuss the various regulatory and legal standards that you may need to adhere to within your company jurisdiction and how to maintain compliance within the cloud infrastructure.


Topics covered:

  • Regulatory and Industry Compliance.

  • Cloud Security Standards.

  • Cloud Security Governance and Risk Management.

  • Auditing and Monitoring Cloud Resources.

  • Cloud Security Assessment and Penetration Testing.

  • Labs: Configure regulatory compliance in Azure and configure AWS Config for CIS standards.


Exam Details


Pre-requisite: No prior cybersecurity knowledge or IT work experience required.

Exam code: 112-54

Number of questions: 75

Duration: 2 hours

Test format: Multiple choice


Please contact us to schedule your exam, booking your corporate private training, or joining a public class.


bottom of page