Skip to main Content

Official ISC2 Certified Cloud Security Professional (CCSP) Training

  • Course Code CCSP
  • Duration 5 days

Course Delivery

Company Event Price

Please call

Request Group Training Add to Cart

Course Delivery

This course is available in the following formats:

  • Company Event

    Event at company

  • Public Classroom

    Traditional Classroom Learning

  • Virtual Learning

    Learning that is virtual

Request this course in a different delivery format.

Course Overview

Top

The CCSP - Certified Cloud Security Professional - certificate gives you international recognition as a security professional from ISC2. This course prepares you for the CCSP exam of ISC2.As powerful as cloud computing is for the organization, understanding its information security risks and mitigation strategies is critical. Legacy approaches are inadequate, and organizations need competent, experienced professionals equipped with the right cloud security knowledge and skills to be successful. They need CCSPs.

Backed by the two leading non-profits focused on cloud and information security, the Cloud Security Alliance (CSA) and (ISC)², the CCSP credential denotes professionals with deep-seated knowledge and competency derived from hands-on experience with cyber, information, software and cloud computing infrastructure security. CCSPs help you achieve the highest standard for cloud security expertise and enable your organization to benefit from the power of cloud computing while keeping sensitive data secure.

Company Events

These events can be delivered exclusively for your company at our locations or yours, specifically for your delegates and your needs. The Company Events can be tailored or standard course deliveries.

Course Schedule

Top

Target Audience

Top

The CCSP credential is designed for experienced information security professionals with at least five years of full-time IT experience, including three years of information security and at least one year of cloud security experience. The CCSP credential is suitable for mid-level to advanced professionals involved with IT architecture, web and cloud security engineering, information security, governance, risk and compliance, and even IT auditing.

CCSP is most appropriate for those whose day-to-day responsibilities involve procuring, securing and managing cloud environments or purchased cloud services. In other words, CCSPs are heavily involved with the cloud. Many CCSPs will be responsible for cloud security architecture, design, operations, and/or service orchestration.

Example job functions include, but are not limited to:

  • Enterprise Architect
  • Security Administrator
  • Systems Engineer
  • Security Architect
  • Security Consultant
  • Security Engineer
  • Security Manager
  • Systems Architect

Course Objectives

Top

CCSP is a global credential born from the expertise of the two industry-leading stewards of information systems and cloud computing security, (ISC)² and CSA. The CCSP credential is appropriate and applicable to cloud security in a global environment. This is especially important given the legal, regulatory and compliance concerns that come with multi-jurisdictional housing of personally identifiable information (PII).

For those who qualify, the CCSP exam will test their competence in the six CCSP domains of the (ISC)² Common Body of Knowledge (CBK), which cover:

  • Architectural Concepts & Design Requirements
  • Cloud Data Security
  • Cloud Platform & Infrastructure Security
  • Cloud Application Security
  • Operations
  • Legal & Compliance

Course Content

Top
Domain 1: Cloud Concepts, Architecture and Design

1.1 Understand cloud computing concepts

1.2 Describe cloud reference architecture

1.3 Understand security concepts relevant to cloud computing

1.4 Understand design principles of secure cloud computing

1.5 Evaluate cloud service providers

Domain 2: Cloud Data Security

2.1 Describe cloud data concepts

2.2 Design and implement cloud data storage architectures

2.3 Design and apply data security technologies and strategies

2.4 Implement data discovery

2.5 Plan and implement data classification

2.6 Design and implement Information Rights Management (IRM)

2.7 Plan and implement data retention, deletion, and archiving policies

2.8 Design and implement auditability, traceability, and accountability of data events

Domain 3: Cloud Platform and Infrastructure Security

3.1 Comprehend cloud infrastructure and platform components

3.2 Design a secure data center

3.3 Analyze risks associated with cloud infrastructure and platforms

3.4 Plan and implementation of security controls

3.5 Plan business continuity (BC) and disaster recovery (DR)

Domain 4: Cloud Application Security

4.1 Advocate training and awareness for application security

4.2 Describe the Secure Software Development Life Cycle (SDLC) process

4.3 Apply the Secure Software Development Life Cycle (SDLC)

4.4 Apply cloud software assurance and validation

4.5 Use verified secure software

4.6 Comprehend the specifics of cloud application architecture

4.7 Design an appropriate identity and access management (IAM) solution

Domain 5: Cloud Security Operations

5.1 Build and implement physical and logical infrastructure for the cloud environment

5.2 Operate and maintain physical and logical infrastructure for cloud environment

5.3 Implement operational controls and standards

5.4 Support digital forensics

5.5 Manage communication with relevant parties

5.6 Manage security operations

Domain 6: Legal, Risk, and Compliance

6.1 Articulate legal requirements and unique risks within the cloud environment

6.2 Understand privacy issues

6.3 Understand audit process, methodologies, and required adaptations for a cloud environment

6.4 Understand implications of cloud to enterprise risk management

6.5 Understand outsourcing and cloud contract design

Course Prerequisites

Top

Candidates must have a minimum of five years cumulative paid work experience in information technology, of which three years must be in information security and one year in one or more of the six domains of the CCSP CBK. Earning CSA’s CCSK certificate can be substituted for one year of experience in one or more of the six domains of the CCSP CBK. Earning (ISC)²’s CISSP credential can be substituted for the entire CCSP experience requirement.

You can learn more about CCSP experience requirements and how to account for part-time work and internships at https://www.isc2.org/Certifications/CCSP/experience-requirements

Recommended prerequisites:

Test Certification

Top

This exam is not included in the course price and can be ordered separately.

  • Exam: 3 hours
  • Number of items: 125
  • Item format: Multiple choice
  • Passing grade: 700 out of 1000 points
  • Exam availability English
  • Testing center: Pearson VUE Testing Center