• Post category:StudyBullet-8
  • Reading time:7 mins read


Exam preparation

What you will learn

Understand what (ISC)2 expects you to know about the cloud platform and infrastructure components.

Recognize where network security appliances are useful.

Comprehend the risk management processes.

Understand the core components of networking.

Comprehend where cloud fits into business continuity management

Description

In this course we walk through all of the critical concepts within the Cloud Platform & Infrastructure domain. This domain is 17% of the test. I will guide you through all of the concepts that you need to know and advise you on the level of knowledge that you need to get comfortable with.

There is over 5 hours of video content plus course notes based on information from my book: Cloud Guardians.

We will take a look at networking. At its core this is a data center class. It is current data center technology that allows companies like Amazon to sell services that live on their network. If you are not comfortable with the basics to how networks work it is essential to take a look. If you are familiar with switches, routers, IP and such I have separated out those video sections so that it is easier to breeze right on by.


Get Instant Notification of New Courses on our Telegram channel.


We will walk through risk analysis, evaluation and response. We will take a look at basic risk terms, from asset and threat to risk appetite and tolerance. It is also very good to know what quantitative and qualitative risk assessments are. You do not need to actually perform any calculations on the test at this time though.

And a brief look at the Cloud Security Alliances Egregious 11 and Treacherous 12 documents. The Treacherous 12 is a pretty basic way to look at problems on the cloud, but the Egregious 11 gets a bit more technical. Not to the level that the OWASP Top 10 is at, but still good to spend a little time getting to know. They are the actual problems (at least some of them) that we have with the cloud today.

We will also look at Business Continuity Management (BCM). It is an abbreviated view as we do not need to go into things like what is the difference between a hot site and a cold site. Instead the question is where does the cloud fit into BCM? Do make sure that you know your time frames e.g., MTD, RTO, RPO, etc.

English
language

Content

Domain Notes

Domain notes

Introduction

Introduction to Platform and Infrastructure

Architecture

Compute, Storage and Network

Introduction to Networking

Introduction to Networking and Switches
VLAN and Virtualized LAN
IP & Routers
Software Defined Networking
Content Delivery Network
Virtual Private Networks
Domain Name System
OS Hardening
DRS and DO
NSG and SAN
Data Storage
RAID and Erasure Coding

Egregious 11

Egregious 11 Number 1-5
Egregious 11 Number 6-11

Treacherous 12

Treacherous 12

Risk Management

Risk Appetite
Risk Tolerance
Basic Risk Terms
Quantitative Risk Assessment
Qualitative Risk Assessment
Risk Response

Identity and Access Management

Basica IAAA Intro
Authorization and RBAC
Attribute Based Access Control (ABAC)
Single Sign-On (SSO)
SAML
OAuth and OpenID

Network Security Tools

CASB
Firewalls
IDS and IPS
Micro Segmentation
Hyper Segmentation
Blast Radius
Database and File Activity Monitors
Data Leak Prevention (DLP)

Data Center

Data Center Tiers

Business Continuity Management

BCM Introduction
The beginning of BCP/DRP planning
Business Impact Assessment part 1
Business Impact Assessment part 2
Business Impact Assessment part 3
Business Impact Assessment part 4
Recovery Strategies
Testing of the Plan
Embed in the User Community