Enhancing Cloud Security Enterprise
Anna Campbell Schorr
Training Program Director
A Guide to Cloud Security Alliance's Educational Pathways
PRESENTED BY
Agenda
Why Cybersecurity? Why Cloud?
Why Cloud Security Alliance?
CSA Training Portfolio
Become a Training Partner and/or Instructor
1
2
3
4
2
Why Cybersecurity?
3
Why Cloud?
4
Cybersecurity education is essential to protecting critical infrastructure.
5
6
Partnerships
7
8
9
Training Portfolio
Certificate of Cloud Security Knowledge (CCSK)
Certificate of Competence in Zero Trust (CCZT)
Security, Trust, Assurance and Risk (STAR) Lead Auditor
Certificate of Cloud Auditing Knowledge (CCAK)
Advanced Cloud Security Practitioner (ACSP)
Cloud Infrastructure Security Training
1
2
3
4
5
6
10
Certificate of Cloud Security Knowledge (CCSK)
“The CCSK sits at a higher level. It summarizes knowledge across domains, gives value to managers and consultants who work with a broader range of technologies, and covers such aspects as risk management, vendor management, architecture, and multi-cloud.”
- Nikolay Akatyev, VP of Internal Security and IT, Horangi Cyber Security
https://cloudsecurityalliance.org/education/ccsk/
.
11
Certificate of Competence in Zero Trust (CCZT)
Vendor Neutrality
Best Practices
Expert Driven
Innovative work around the Software Defined Perimeter by CSA Research and an extensive volunteer community of �industry leaders
Foundational Zero Trust guidance from authoritative sources, such as NIST �and CISA
Collaboration and leadership from renowned Zero Trust experts such as John Kindervag, the founder of Zero Trust
The industry’s first authoritative Zero Trust training and certificate
12
Security, Trust, Assurance & Risk (STAR) Lead Auditor
“Coalfire and Coalfire certification, the accredited certification body arm of Coalfire, began offering STAR™ attestation and certification services as part of its product catalog in response to increasing customer requests. As part of feedback reviews, Coalfire determined that many of our clients were seeking guidance pertaining to assurance programs that would address compliance in the cloud. While other baseline security standards can be vague when addressing shared responsibilities between the cloud provider and cloud user, the Cloud Controls Matrix (CCM) understands that relationship and enforces design requirements for both parties before rating the degree of conformity for any given objective” -David Forman, VP of Coalfire
2,300+ Registries!
13
Certificate of Cloud Auditing Knowledge (CCAK)
*The Financial Brand article “More Consumers Prefer Contactless Payments for Pandemic Purchases”
**107% 2016 and 2019: “Increase in USA cloud computing jobs.” - Indeed article "The Best Jobs of 2020", February 27, 2020 �
Consumer Benefits
Job Growth
Cloud Benefits
14
Advanced Cloud Security Practitioner (ACSP)
Build
Implement
Leverage
Architect an enterprise-scale secure cloud. Build a deployment pipeline, integrate it into an existing application stack, and code a variety of security automation controls.
Manage enterprise security at cloud scale. Configure a production-quality account with multiple virtual networks and core security controls.
Build secure applications and run operations at the speed of cloud utilizing DevSecOps and automation.
15
& MORE! Artificial Intelligence, etc.
16
Why Cybersecurity Training? Why now?
Evolving Technology
Workforce�Development
Security Gaps
Emergence of AI
Computer technology continues to shift towards an open but untrusted infrastructure
Skills gaps are widening with rapidly evolving cybersecurity threats. CSA’s Training provides a strategy for individuals and organizations to develop the necessary skills to keep up
CSA’s Training can help address gaps in traditional security models and facilitate a more mature and sustainable approach to security
Rapid availability of AI tools makes implementing a cybersecurity strategy critical
17
Benefits
CPE Credits
Earn towards CPE credits or other continuing education credits
Digital Badge
Showcase your knowledge and validate your expertise across all digital forums
Professional Advancement
Gain a competitive edge in the job market
Authoritative Source
CSA facilitates the integration of trusted experts, sources and tools
18
Training Delivery Options
Self-Paced
Instructor Led
Virtual Instructor Led
If you want training but have a hard time fitting in a regular course and need something flexible enough for your schedule and budget then our self-paced training may be a good fit.
You get the opportunity to interact with an instructor face to face, ask questions and learn in the same room with other students.
For individuals who work best when they can ask questions. May also be an option for companies with a tight travel budget.
19
Training Partners & Authorized Instructors
Contact Us! Training@cloudsecurityalliance.org
https://cloudsecurityalliance.org/education/instructors/
https://cloudsecurityalliance.org/education/training-partners/
20
Success Stories
“I took a CCSK class from Peter. He prepares well, engages the class, and covers all the important facets of cloud computing. Peter's class was the only boot camp I've actually enjoyed taking. I recently took and passed the CCSP exam, and felt that much of what I needed to successfully navigate the test was covered in depth by the CCSK class. Thank you for the great class!” - Student
“Zero Trust is the future of information security. “Investing in Zero Trust and the CCZT is an investment in our organization’s future. Through the CCZT, our team was able to gain invaluable insights into Zero Trust best practices. Professionals seeking validation on their understanding and implementation of Zero Trust should strongly consider obtaining the CCZT.” - Rob LaMagna-Reiter VP, Information Security & Compliance, and CISO, Hudl
21
Call to Action: Get Involved!
Questions? Thank you for your time today!
22
Questions?
Thank you for your time today.
23