Get in Touch

Course Outline

Introduction to ISO 27017

  • Overview of ISO/IEC 27017
  • Relationship with ISO 27001 and ISO 27002
  • The role of governance in cloud security

Cloud Security Risks and Threats

  • Common security risks inherent in cloud environments
  • Cloud-based attack vectors
  • Risk assessment methodologies applicable to cloud services

Key Information Security Controls in ISO 27017

  • Additional controls specific to cloud infrastructure
  • Shared security responsibilities between CSPs and customers
  • Data protection and encryption strategies in the cloud

Implementing Cloud Security Policies

  • Defining security policies for cloud adoption
  • Access control and identity management practices
  • Managing security incidents within cloud environments

Compliance and Regulatory Considerations

  • Legal and regulatory implications for cloud security
  • Mapping ISO 27017 controls to GDPR, HIPAA, and other regulations
  • Processes for cloud compliance audits and certification

Best Practices for Cloud Security

  • Security monitoring and threat detection techniques
  • Implementing continuous improvement in cloud security
  • Ensuring resilience and effective disaster recovery

Hands-On Implementation and Case Studies

  • Applying ISO 27017 controls in real-world scenarios
  • Analyzing cloud security case studies
  • Interactive exercises focused on cloud security strategy

Summary and Next Steps

Requirements

  • A fundamental understanding of cloud computing concepts
  • Knowledge of general information security principles
  • Familiarity with ISO 27001 or other established cybersecurity frameworks

Audience

  • Cloud security professionals
  • IT security managers
  • Compliance officers
  • Cloud service providers
 14 Hours

Number of participants


Price per participant

Testimonials (2)

Upcoming Courses

Related Categories