Complete Cloud Security Professional Training Course

Complete Cloud Security Professional Training Course
Complete Cloud Security Professional Training Course

Course Details

  • # 36346_110445

  • 25 – 29 October 2026

  • Trabzon

  • 6800 €

Overview

This Complete Cloud Security Professional course prepares candidates for the CCSP (Certified Cloud Security Professional) credential from ISC2, which is vendor-neutral: it tests how a seasoned practitioner reasons about any provider's offering rather than how to click through one console. Over five days it walks through the six domains of the CCSP Common Body of Knowledge in order, and teaches each through choices a cloud security manager actually signs: whether a workload is portable enough to leave a provider, which obfuscation method suits a dataset, what a provider's SOC 2 Type II exceptions really mean, which clauses to insist on before signing, and how to answer a litigation hold. Every domain closes with exam-style questions and a debrief on why the distractors are wrong. This course is delivered by Agile Leaders Training Center.

Who Should Attend

  • Practitioners with several years in IT and information security planning to sit the CCSP exam
  • CISSP holders adding a cloud-specific credential
  • Enterprise architects who approve designs spanning more than one provider
  • Third-party and supplier assurance managers vetting cloud vendors
  • Auditors, privacy officers and legal counsel reviewing cloud agreements

Departments and Industries

Suited to teams that must judge providers they do not run themselves.

  • Supplier assurance teams in banking and insurance
  • Architecture review boards in SaaS businesses
  • Records management and privacy offices in hospitals
  • Legal and purchasing teams drafting hosting agreements
  • Government shared-services and digital units

Learning Objectives

By the end of this course, participants will be able to:

  • Use the NIST SP 800-145 and ISO/IEC 17788 definitions to describe any offering and the roles of customer, provider, partner and broker.
  • Evaluate interoperability, portability and reversibility before a workload is moved.
  • Compare tokenisation, masking, anonymisation and crypto-shredding for a given dataset.
  • Analyse risks specific to Type 1 and Type 2 hypervisors, sandboxing and application virtualisation.
  • Apply STRIDE, SAST, DAST and OWASP ASVS checks within a cloud software lifecycle.
  • Evaluate SOC 1, SOC 2 and CSA STAR evidence and negotiate right-to-audit, breach-notice and exit terms.

Course Agenda

Day 1: Domain 1 - Concepts, Reference Architecture and Design

  • CCSP exam structure, ISC2 experience rules and a study plan
  • NIST SP 800-145 and ISO/IEC 17788 vocabulary; roles of customer, provider, partner, broker, auditor and regulator
  • Cross-cutting aspects: interoperability, portability, reversibility and availability
  • Business impact analysis and the cost case for migration
  • Evaluating a provider through Common Criteria and FIPS 140 validations

Day 2: Domain 2 - Protecting Data Held by a Provider

  • Create, store, use, share, archive, destroy: the CCSP secure data lifecycle
  • Raw, volume, object, structured and unstructured storage per service model
  • Tokenisation, masking, anonymisation and key escrow compared
  • Information rights management and data discovery
  • Retention schedules, litigation hold and crypto-shredding, with an exam-style question set and debrief

Day 3: Domains 3 and 4 - Provider Platforms and Cloud Applications

  • Type 1 versus Type 2 hypervisors, guest escape and tenant separation
  • Provider data centre siting, power, cooling, redundancy tiers and recovery objectives across regions
  • The cloud software lifecycle and the OWASP Top 10 in a cloud context
  • STRIDE threat modelling, SAST, DAST and OWASP ASVS
  • Sandboxing, application virtualisation and API gateways

Day 4: Domain 5 - Running Security Day to Day

  • Building and securing the logical environment inside a tenant
  • ITIL change, configuration, capacity and problem management
  • Security operations visibility when telemetry belongs to the provider
  • Evidence collection and chain of custody under ISO/IEC 27037
  • Communicating with vendors, customers and regulators during an event, with an exam-style question set and debrief

Day 5: Domain 6 - Legal, Risk and Compliance, and Mock Exam

  • Conflicting jurisdictions, data sovereignty and eDiscovery under ISO/IEC 27050; privacy principles and ISO/IEC 27018
  • SOC 1, SOC 2 Type I and Type II, and the CSA STAR registry
  • Hosting agreement clauses: right to audit, breach notice, exit and data return
  • Enterprise risk appetite and residual risk when outsourcing to a provider
  • Full-length timed mock exam and domain-by-domain score review

Practical Exercises

These suggested case activities put the CCSP domains to work on decisions a cloud security manager signs off.

  • Suggested activity: decide whether an HR system can leave its current provider, scoring portability and reversibility.
  • Suggested activity: pick an obfuscation method for each column of a patient table.
  • Suggested activity: read a SOC 2 Type II extract and list the exceptions that matter to your organisation.
  • Suggested activity: redline a hosting agreement for audit rights, breach notice and exit.

FAQs

What background is recommended?

Several years in IT including time in information security. ISC2 sets its own experience rules for the credential; candidates should confirm them before booking the exam.

Is the course tied to one provider?

No. Like the CCSP exam it is vendor-neutral; provider names appear only as examples.

How does this differ from a hands-on engineering course?

It trains judgement across providers: contracts, assurance evidence, data decisions and risk, rather than configuring a single platform.

Conclusion

Participants finish having covered all six CCSP domains, a timed mock exam and several contract and assurance cases drawn from real provider decisions, with a personal list of weak areas to revise and a clearer way of judging any cloud provider's evidence, contracts and data controls before sitting the ISC2 exam.


IT Security Training & IT Training Courses
Complete Cloud Security Professional Training Course (36346_110445)

36346_110445
25 – 29 October 2026
6800  €

 

Course Details

# 36346_110445

25 – 29 October 2026

Trabzon

Fees : 6800 €

Complete Cloud Security Professional Training Course runs in Trabzon over 5 days, with 1 upcoming date in Trabzon. The course fee is 6,800 €.

All dates in Trabzon

Dates Price Actions
25 – 29 October 2026 6,800 € Register

Training in Trabzon

Experience our top-notch training courses in Trabzon, the stunning Black Sea gem of Turkey. Join one of our professional training programs in Trabzon today and elevate your skills in a truly inspiring setting!

All courses in Trabzon

This course in other cities