Companies Home Search Profile

CCSP Domain 4 - Cloud Application Security

Focused View

Gwen Bettwy

2:45:25

55 View
  • 1 - Domain-4-CCSP.pdf
  • 1 - Guardians-domain-4-Cloud-application-security.pdf
  • 1 - Introduction and What is Clean Code.mp4
    07:45
  • 1 - SecaaS-Cat-2-DLP-Implementation-Guidance-1.pdf
  • 1 - isc2-nda.pdf
  • 1 - security-guidance-v4-updated-9-16.pdf
  • 2 - Software Development Life Cycle SDLC.mp4
    05:41
  • 3 - Supply Chain Management.mp4
    03:14
  • 4 - Software Development Methodologies.mp4
    06:09
  • 5 - DevOps Practices.mp4
    09:12
  • 6 - Xtra My thoughts numbers 4 the test.mp4
    02:21
  • 7 - CICD and DevSecOps.mp4
    03:43
  • 8 - Software Verification and Validation.mp4
    04:00
  • 9 - Software Testing.mp4
    08:32
  • 10 - SANS Top 10 of 25 Programming Errors.mp4
    08:50
  • 11 - OWASP Top 4 Programming Errors to know.mp4
    10:45
  • 12 - ISO 27034.mp4
    07:03
  • 13 - Sandbox.mp4
    03:54
  • 14 - Threat Modeling.mp4
    10:40
  • 15 - Orchestration.mp4
    01:44
  • 16 - Introduction to encryption.mp4
    05:32
  • 17 - Encrypting data in use.mp4
    02:18
  • 18 - Encrypting data at rest.mp4
    01:53
  • 19 - Encrypting data in motion SSH.mp4
    04:33
  • 20 - Encrypting data in motion TLS.mp4
    02:30
  • 21 - Encrypting data in motion IPSec.mp4
    03:28
  • 22 - Symmetric encryption.mp4
    01:58
  • 23 - Introduction to Asymmetric.mp4
    07:04
  • 24 - Use of public and private keys.mp4
    04:13
  • 25 - Key storage location.mp4
    11:26
  • 26 - Basic IAAA Introduction.mp4
    08:38
  • 27 - Single Sign On SSO.mp4
    04:30
  • 28 - SAML.mp4
    07:44
  • 29 - CASB.mp4
    06:05
  • Description


    Exam preparation - This domain is in alignment with the August 2022 exam outline

    What You'll Learn?


    • Understand what (ISC)2 expects you to know about the Cloud Applications Security domain.
    • Comprehend
    • Explain
    • Understand

    Who is this for?


  • This course is intended for people that are preparing for the (ISC)2 CCSP exam.
  • This course would benefit anyone working to expand their knowledge and understanding of the Cloud Application Security.
  • More details


    Description

    In this course we walk through all of the critical concepts within the Cloud Application Security domain. This domain is 17% of the test as of August 2022. I will guide you through all of the concepts that you need to know and advise you on the level of knowledge that you need to get comfortable with.

    There are over two and a half hours of video content plus course notes based on information from my book: Cloud Guardians.

    We will explore the software development lifecycle (SDLC), to include the phases and the methodologies for moving through those phases.

    It is important to know the risks to applications including any that are cloud specific. We will talk about SQL injections and buffer overflows and the like. The more that you know of these threats from the Pandemic 11 to OWASP and the SANS Top 20 the better prepared you will be for the exam.

    Threat modeling techniques are also key. We will look at STRIDE and DREAD and a couple of others.

    Testing application is very critical. This is our most common attack point these days. We will talk about closed box and open box testing as well as DAST, SAST and IAST.

    There is also a great need to take care with the supply chain involved in creating software today. We have learned from recent attacks that the supply chain can be compromised.

    We finish with discussion about maturity models and data rights management/information rights management and maturity models.

    Who this course is for:

    • This course is intended for people that are preparing for the (ISC)2 CCSP exam.
    • This course would benefit anyone working to expand their knowledge and understanding of the Cloud Application Security.

    User Reviews
    Rating
    0
    0
    0
    0
    0
    average 0
    Total votes0
    Focused display
    Category
    Hi! I am Gwen Bettwy CISSP-ISSAP, ISSMP, CCSP, CGEIT, CISM, CISA, SSCP, CCSI I have been traveling and teaching around the world since 1994. I began teaching Information Security in 2003 for (ISC)2. I have averaged about 2 courses a month since 1994. I began my career at Sprint which has helped me prepare for CCSPs cloud provider view.Most of the courses I have taught since 2003 has been CISSP, although CISM, CISA, SSCP, and CGEIT have been sprinkled through there. I began teaching CCSP in 2017, since the exam was not launched until 2015.I have a proven track record in the classroom of guiding students through information security concepts through to certification!
    Students take courses primarily to improve job-related skills.Some courses generate credit toward technical certification. Udemy has made a special effort to attract corporate trainers seeking to create coursework for employees of their company.
    • language english
    • Training sessions 29
    • duration 2:45:25
    • Release Date 2023/03/29