security and compliance topics covered in cloudmaster it training

36
Security and Compliance Topics Covered in CloudMASTER Cloud Computing Classes Carvertc.com/cloud Carvertc.com/class-schedule

Upload: carver-technology-consulting-llc

Post on 23-Jan-2018

201 views

Category:

Technology


0 download

TRANSCRIPT

Page 1: Security and Compliance Topics Covered in CloudMASTER IT Training

Security and

Compliance Topics

Covered in

CloudMASTER Cloud

Computing Classes

Carvertc.com/cloudCarvertc.com/class-schedule

Page 2: Security and Compliance Topics Covered in CloudMASTER IT Training

When implementing

cloud computing

solutions, an

understanding of cloud

security and compliance

issues, options, and

solutions is essential.

Page 3: Security and Compliance Topics Covered in CloudMASTER IT Training

Cloud Security Topics Covered in

CloudMASTER Cloud Computing Classes

Page 4: Security and Compliance Topics Covered in CloudMASTER IT Training

Classes cover how cloud

computing has security

threats just like

traditional networks.

Page 5: Security and Compliance Topics Covered in CloudMASTER IT Training

Common threats

discussed in class

include:• Hacking

• Data Breaches

• Data Loss

• Traffic Hijacking

• Insecure Interfaces / APIs

• DDos Attacks

• Poor Planning

• Shared Technology Risks

Page 6: Security and Compliance Topics Covered in CloudMASTER IT Training

Discontinued Services

Classes cover a defense in depth approach to implement layers of security to protect your cloud environment.

Page 7: Security and Compliance Topics Covered in CloudMASTER IT Training

Security topics include:• Essential Security Practices

• Essential Security Tools

• FedRAMP Security Standards

Page 8: Security and Compliance Topics Covered in CloudMASTER IT Training

Classes cover encryption to

protect the confidentiality

of data in the cloud.

Page 9: Security and Compliance Topics Covered in CloudMASTER IT Training

Encryption topics include:• Encryption Types

• Encryption Strengths

• Encryption Options

Page 10: Security and Compliance Topics Covered in CloudMASTER IT Training

Classes cover encryption

key management to

securely store, protect

and retrieve keys.

Page 11: Security and Compliance Topics Covered in CloudMASTER IT Training

Key management topics

include:• Key Pairs

• Key Pair Scenarios

• Key Rotation

• Certificate Vendor Selection

Page 12: Security and Compliance Topics Covered in CloudMASTER IT Training

Classes cover identity and Account Management (IAM) to provide single sign-on for users.

Page 13: Security and Compliance Topics Covered in CloudMASTER IT Training

IAM topics include:• Authentication Requirements

• Multi-factor Authentication

• Federation for Single Sign On

• AWS IAM

• Third Party IAM Solutions

Page 14: Security and Compliance Topics Covered in CloudMASTER IT Training

Classes cover secure

data in transit whether it

is internal, or in the

cloud.

Page 15: Security and Compliance Topics Covered in CloudMASTER IT Training

Classes cover secure

data at rest whether it

is internal or in the

cloud.

Page 16: Security and Compliance Topics Covered in CloudMASTER IT Training

Classes cover the

impact of security on

data portability.

Page 17: Security and Compliance Topics Covered in CloudMASTER IT Training

Classes cover the

impact of data

movement on security.

Page 18: Security and Compliance Topics Covered in CloudMASTER IT Training

Discontinued Services

Classes cover securing cloud applications as you would with any application.

Page 19: Security and Compliance Topics Covered in CloudMASTER IT Training

Application security topics

include:• Cloud App Security Fundamentals

• Interface and API Security

• Secure App Administration

• Secure Shell (SSH) Configuration

• Securing Heroku Apps wtih

GitBash

Page 20: Security and Compliance Topics Covered in CloudMASTER IT Training

Classes cover perimeter

security to keep your

network secure when

connecting to the cloud.

Page 21: Security and Compliance Topics Covered in CloudMASTER IT Training

Perimeter security topics

include:• Firewall

• DDoS Detection and Mitigation

• Cloud Service Monitoring

• Third Party Services

Page 22: Security and Compliance Topics Covered in CloudMASTER IT Training

Classes cover defining

a process for how to

respond to a security

event.

Page 23: Security and Compliance Topics Covered in CloudMASTER IT Training

Event response topics

include:• Types of Security Events

• Impact of a Cloud Security

Breach

• Response Processes and Tools

Page 24: Security and Compliance Topics Covered in CloudMASTER IT Training

Compliance Topics Covered in

CloudMASTER Cloud Computing Classes

Page 25: Security and Compliance Topics Covered in CloudMASTER IT Training

HIPAA Health Insurance Portability and Accountability Act

Regulatory Requirements Defined

FERPA Federal Education Rights and Privacy Act

SCA Stored Communications Act

FCRA Fair Credit Reporting Act

COPPA Children’s Online Privacy Protection Act

SOX Sarbanes-Oxley Act

FISMA Federal Information Security Management Act

PCI DSS Payment Card Industry Data Security Standard

Page 26: Security and Compliance Topics Covered in CloudMASTER IT Training

Classes cover who owns compliance responsibilities during an audit.

Yours

Providers

Page 27: Security and Compliance Topics Covered in CloudMASTER IT Training

Classes cover key strategies to help ensure compliance.

Page 28: Security and Compliance Topics Covered in CloudMASTER IT Training

Key strategies topics include:• Provider compliance vetting and

comparison

• Using hybrid cloud implementations for compliance

• Patriot Act impact on Cloud Providers and Services

Page 29: Security and Compliance Topics Covered in CloudMASTER IT Training

Classes cover the tools and standards that help meet compliance.

Page 30: Security and Compliance Topics Covered in CloudMASTER IT Training

Tools and standards topics include:• Compliance standards:

SSAE 16, ISAE 3402, and ISO 27001

• 3rd party compliance tools and services

• CloudAudit specification

Page 31: Security and Compliance Topics Covered in CloudMASTER IT Training

Classes cover the questions you need to ask your providers that relate to compliance.

Page 32: Security and Compliance Topics Covered in CloudMASTER IT Training

Common question topics include:

• Data location

• Data center security

• Tenant data isolation

• Security controls

• Auditing and logging

• Incident response

• Audit response

Page 33: Security and Compliance Topics Covered in CloudMASTER IT Training

What are you waiting for?

Turn up your cloud

computing expertise!

Learn more about CloudMASTER:

https://carvertc.com/cloudmaster

See our class schedule & class

descriptions:

http://carvertc.com/class-schedule