Call 0917 798 1811 | Email hello@ivtstechnology.asia
About the Course
EC-Council's Cloud Security Essentials (CSE) is a foundational course covering cloud computing and security fundamentals, data protection and encryption in the cloud and more. This course prepares you to secure identities, data, and applications within cloud providers and hybrid infrastructures. No IT/cybersecurity experience is required for this course.
Skills you will learn from the CSE program
Learn the fundamentals of cloud computing and security.
Explore identity and access management in the cloud.
Learn about data protection and encryption in the cloud.
Gain knowledge of network security in cloud environments.
Dive deep into application security in cloud environments.
Gain insights on cloud security monitoring and incident response.
Explore cloud security risk assessment and management.
Understand the basics of cloud compliance and governance.
Target Audience
High school, college, and university students.
IT, technology, and cybersecurity teams with little or no prior work experience.
Anyone who wants to start a career in cybersecurity, cloud security, or network security and is interested in cloud technology.
Professionals securing public, private, and hybrid cloud infrastructures, identities, data, and applications.
IT professionals, system administrators, cloud administrators, cybersecurity operations and administrators, engineers, and architects.
Course Outline
Module 1: Cloud Computing and Security Fundamentals
This module will introduce you to the course and provide foundational information about cloud infrastructure and security.
Topics covered:
Cloud Computing Types and Service Models.
Cloud Security Challenges and Concerns.
Cloud and Security Responsibility.
Evaluating Cloud Service Providers.
Cloud Security Benefits.
Threats and Attacks in Cloud Environments.
Cloud Security Design Principles.
Cloud Security Architecture.
Module 2: Identity and Access Management (IAM) in the Cloud
This module will focus on the protection of identity and access management. This will include how to protect users and assign proper permissions.
Topics Covered:
IAM Fundamentals.
Principal and Roles of IAM in the Cloud.
Role-based Access Control (RBAC).
Identity Federation.
Single Sign-on (SSO) and Self-Service Password Reset (SSPR).
Multi-factor Authentication (MFA).
Principle of Least Privilege.
IAM Auditing and Monitoring.
Labs: Assign roles and enforce MFA in AWS, and implement roles and enforce MFA with conditional access policies in Azure.
Module 3: Data Protection and Encryption in the Cloud
This module will provide information on how to protect data from loss and unauthorized access.
Topics Covered:
Data Classification and Lifecycle.
Encryption Techniques (at Rest, in Transit).
Customer vs Cloud Provider Managed Keys.
Data Loss Prevention (DLP).
Backup and Disaster Recovery Strategies.
Lab: Set up KMS in AWS, set up Key Vault in Azure, and create DLP policies in Microsoft 365.
Module 4: Network Security in the Cloud
This module will teach you how to securely architect your network to protect again unauthorized access and detect potential network attacks.
Topics Covered:
Cloud Network Fundamentals.
Virtual Private Clouds (VPC).
Network Isolation and Segmentation.
Network Access Control Lists (NACLs) and Network Security Groups (NSG).
Remote Access and Connections.
Firewalls and Intrusion Detection.
Labs: Create a VPC and configure NACL and NSG in AWS, as well as create a VNET and configure an NSG in Azure.
Module 5: Application Security in the Cloud
This module will show you how to secure applications, web access, and databases in cloud environments.
Topics Covered:
Secure Software Development Lifecycle (SDLC) in the Cloud.
Web Application Firewall (WAF) in Cloud Environments.
Web Application Security and OWASP Top Ten.
Security by Design Principles for Cloud Applications.
Secure Coding Practices.
API Security and Integration Best Practices.
Serverless Security Considerations.
Container Security (Docker, Kubernetes).
Labs: Create an application gateway with WAF and create a WAF in AWS.
Module 6: Cloud Security Monitoring and Incident Response
This module will introduce you to the foundations of security operations, including logging activity and events, identifying threats and intrusions, and responding to incidents.
Topics Covered:
Cloud Logging.
Cloud Security Monitoring.
SIEM and SOAR.
Cloud-native Monitoring Solutions.
Continuous Security Monitoring Strategies.
Cloud Security Monitoring Best Practices.
Incident Response in Cloud.
Labs: Configure Microsoft Sentinel, configure workload protection for Microsoft Defender for Cloud, configure Guard Duty on AWS, and configure Security Hub on AWS.
Module 7: Cloud Security Risk Assessment and Management
This module will discuss the process of risk analysis, assessment, and management.
Topics covered:
Identifying Cloud Security Risks.
Risk Assessment Frameworks for Cloud Environments.
Cloud Security Controls and Countermeasures.
Threat Modeling and Vulnerability Assessment in Cloud Environments.
Quantitative vs Qualitative Risk Assessment Approaches.
Cloud Risk Treatment, Response, and Mitgation.
Module 8: Cloud Compliance and Governance
This module will discuss the various regulatory and legal standards that you may need to adhere to within your company jurisdiction and how to maintain compliance within the cloud infrastructure.
Topics covered:
Regulatory and Industry Compliance.
Cloud Security Standards.
Cloud Security Governance and Risk Management.
Auditing and Monitoring Cloud Resources.
Cloud Security Assessment and Penetration Testing.
Labs: Configure regulatory compliance in Azure and configure AWS Config for CIS standards.
Exam Details
Pre-requisite: No prior cybersecurity knowledge or IT work experience required.
Exam code: 112-54
Number of questions: 75
Duration: 2 hours
Test format: Multiple choice
Please contact us to schedule your exam, booking your corporate private training, or joining a public class.

