CCSP Syllabus
Domain 1 : Cloud Architecture & Design
Understanding basic cloud computing concepts
Describe cloud reference architecture
Understanding security concepts relevant to cloud computing
Understanding the design principles of secure cloud computing
Identifying trusted cloud services
Domain 2 : Data Security in Cloud Platforms
Understanding the entire cloud data lifecycle
Designing and implementing cloud data storage architectures
Designing and applying data security strategies
Understanding and implementing data discovery and classification technologies
Designing and implementing relevant jurisdictional data protection for PII data.
Designing and implementing data rights management
Planning and implementing data retention, deletion, and archiving policies
Designing and implementing auditability, traceability and accountability of data
events
Domain 3 : Cloud Infrastructure & Cloud Platform Security
Understanding cloud infrastructure components
Analyzing overall risks related to cloud infrastructure
Designing and planning security controls for cloud platform
Planning disaster recovery and business continuity management
Domain 4 : Application Security on Cloud Platforms
Recognizing the need for training and awareness for application security
Understanding the cloud software assurance and validation
Using verified secure software
Understanding the SDLC process
Applying the secure software development lifecycle
Understanding the specifics of cloud application architecture
Designing an appropriate identity and access management solutions
Domain 5 : Cloud Operations
Supporting the planning of the data center design
Implementing and building infrastructure for the cloud environment
Running and managing a logical infrastructure for a cloud environment
Ensuring compliance with the latest regulations and controls
Access control attacks
Identity and access provisioning lifecycle (e.g. provisioning review)
Conducting a risk assessment to logical and physical infrastructure
Understanding the collection, acquisition, and preservation of digital evidence
Managing communication with relevant parties
Domain 6 : Legal & Compliance
Understanding the legal requirements and unique risks within the cloud
environment
Understanding the privacy issues, including jurisdictional variation
Understanding the audit process, methodologies, and required adaption's for a
cloud environment
Understanding the implications of cloud to an enterprise through risk
management
Understanding about outsourcing and cloud contract design
Executing vendor management