Domain 5: Cloud Security Operations

Video Activity
Join over 3 million cybersecurity professionals advancing their career
Sign up with
Required fields are marked with an *
or

Already have an account? Sign In »

Time
12 hours 57 minutes
Difficulty
Intermediate
CEU/CPE
13
Video Transcription
00:00
>> Here we are, Domain 5: Cloud security operations.
00:00
In this lesson, we're going to do
00:00
an overview of the topics in Domain 5,
00:00
talk about the importance of the concepts with
00:00
regards to cloud security operations,
00:00
and we want to connect the concepts
00:00
>> we're going to cover in Domain 5 to the domains
00:00
>> that have come before it.
00:00
>> In Domain 5, we're
00:00
going to talk about change management,
00:00
monitoring security operations, incident response,
00:00
and then the major cloud risk
00:00
affecting cloud environments.
00:00
Now, one of the things about
00:00
these five domains is that they overlap.
00:00
At this point, we've talked about
00:00
all the major cloud deployment and service models,
00:00
we've talked about how you identify data
00:00
and the most important
00:00
things to be protected within your environments
00:00
and protecting data in various states.
00:00
We've talked about different operations
00:00
or the physical security of the data center
00:00
and how it should be maintained,
00:00
the aspects of the infrastructure,
00:00
and then we've also gone into how to create software
00:00
securely and deploy
00:00
secure applications in cloud environments.
00:00
Some of the topics that we're going to talk
00:00
about such as patch management,
00:00
incident response, really will
00:00
build on many of the concepts that have come before.
00:00
We want to really talk about how changes can
00:00
be applied and done in the cloud in a secure manner,
00:00
and then we also want to talk about
00:00
when things truly go wrong,
00:00
an incident is declared and something is investigated,
00:00
how that process works.
00:00
Then ultimately I want to draw upon all of
00:00
your knowledge that you've developed so
00:00
far when thinking about these major cloud risks,
00:00
and how the concept of defense in depth is
00:00
applied based on the concepts we've talked about,
00:00
whether it comes to processes or procedures,
00:00
detective preventive and corrective controls,
00:00
and how those things all come together to
00:00
protect organizations from these major cloud risks.
00:00
As we're getting in the right headspace for Domain 5,
00:00
I want you to think about what roles and
00:00
responsibilities for cloud security operations
00:00
do you know of currently.
00:00
Just establish your baseline when it comes to who's
00:00
responsible for maintaining cloud security
00:00
at an operational level.
00:00
Then I want you to think what are
00:00
the current aspects of
00:00
cloud security operations that you're familiar with?
00:00
Do you have any role when it comes
00:00
>> to change management?
00:00
>> How about patching?
00:00
Have you ever reported an incident
00:00
or been involved in the incident response process?
00:00
How do you ensure that your incident response process
00:00
is really up to snuff and capable
00:00
of handling most of the major incidents that
00:00
are likely to occur in your cloud environment?
00:00
Then ultimately, I want you to
00:00
think about when do you think about
00:00
>> these things like, what aspects of cloud security
00:00
>> operations surprised you?
00:00
>> Which things have we
00:00
begun to discuss that you hadn't really considered?
00:00
In summary, we've talked about
00:00
the topics that are to be covered here in Domain 5:
00:00
Cloud security operations,
00:00
talked about the importance of Domain 5.
00:00
This is really about
00:00
how all the things we've learned about in the cloud
00:00
are protected in a consistent manner.
00:00
Also what are the major risks or
00:00
threats to cloud environments.
00:00
We've connected Domain 5 to
00:00
the other concepts we've gone over before.
00:00
I'm excited to get started with Domain 5.
00:00
I'll see you in the next lesson.
Up Next