CCSK Cert Prep: 2 Infrastructure Security for Cloud

CCSK Cert Prep: 2 Infrastructure Security for Cloud

1h 41mAdvanced2021-02-10

Authors

Daniel Lachance

Daniel Lachance

Consultant, Trainer, Author, and Editor at Lachance IT Consulting

Course details

Cloud-based services should be secured with common practices such as hardening, disaster recovery planning, periodic security testing, and the use of encryption. Instructor Daniel Lachance goes over software-defined networking (SDN), cloud network infrastructure security, cloud application workload security, and business continuity in the cloud. Daniel begins with an overview of SDN and shows you how to create a virtual private cloud (VPC). He explains how to configure VPC peering, which links cloud-based networks. Daniel describes how to manage access control lists (ACLs) and how to configure a virtual private network (VPN). He reviews ways to manage cloud resources remotely over the Internet. Daniel explains identity and access management (IAM) policies. He discusses how to conduct a business impact analysis and craft disaster recovery policies, then concludes with an explanation of cloud backups and how you can use them to protect workloads and data on-premises.

Skills covered

Cloud SecurityAmazon Web Services (AWS)AmazonCert PrepCloud Computing

Concepts

Introduction

  • Infrastructure security
  • What you should know

Software-Defined Networking

  • Software-defined networking (SDN) overview
  • Creating a virtual private cloud (VPC)
  • Configuring SDN routing
  • Peered VPC connections
  • Configuring VPC peering

Cloud Network Infrastructure Security

  • Network security access control lists (ACLs)
  • Managing network ACLs
  • Virtual private networks (VPNs) and the cloud
  • Configuring a cloud Client-to-Site VPN
  • Secure cloud management strategies
  • Securing cloud administration

Cloud Application Workload Security

  • Common application attacks
  • Identity and access management (IAM)
  • Configuring IAM to support application security
  • Protecting data at rest in the cloud
  • Serverless and containerized applications
  • Enabling HTTPS web application bindings

Business Continuity in the Cloud

  • Cloud disaster recovery planning
  • Multiregion cloud resource deployments
  • Enabling application load balancing
  • Enabling cloud backup and restore

Conclusion

  • Next steps
40,000 Toman