Overview
This self-paced course prepares learners to earn the Certificate of Cloud Security Knowledge (CCSK), providing a deep understanding of cloud computing security principles, terminology, and best practices. Developed by the Cloud Security Alliance (CSA), the course includes access to learning materials for one year and covers 12 critical domains aligned with CCSK v5.
With structured content and guided labs, learners will explore governance, identity management, risk, workload protection, data security, incident response, and more. The course bundle includes the CCSK exam token, fully guided study resources, and access to the CCSK Orb chatbot for permanent learning support.
Prerequisites
There are no formal prerequisites. However, it is strongly recommended that learners have:
- A basic understanding of cybersecurity concepts such as firewalls, encryption, identity and access management, and secure development
- An interest in cloud service models, governance frameworks, and risk controls
Target audience
This course is ideal for:
- Network administrators, systems engineers, and security analysts
- Cloud architects and DevOps professionals
- Cybersecurity consultants and risk managers
- Pre- and post-sales engineers supporting cloud technologies
- IT professionals preparing for CCSK certification
Objectives
By the end of this course, learners will be able to:
- Define cloud computing models, reference architectures, and security frameworks
- Implement cloud governance and compliance strategies based on CSA best practices
- Conduct cloud risk assessments and manage audit requirements
- Apply identity and access controls within multi-cloud and hybrid environments
- Use monitoring, telemetry, and analytics tools to secure cloud infrastructures
- Protect cloud workloads including virtual machines, containers, and serverless services
- Secure cloud data using classification, encryption, and workload-specific controls
- Integrate secure application design principles using DevSecOps and CI/CD pipelines
- Develop cloud-specific incident response and resilience planning processes
- Understand emerging technologies like Zero Trust and generative AI in cloud security
Outline
Introduction and orientation
- Navigating the CCSK learning environment
- Using the CCSK Orb and CSA Circle
Domain 1: Cloud computing concepts and architectures
- Defining cloud models and reference architectures
- Scope of cloud security and shared responsibility
Domain 2: Cloud governance
- Governance frameworks and hierarchy
- Key strategies for governance in cloud environments
Domain 3: Risk, audit, and compliance
- Risk management tools and frameworks
- Compliance validation and cloud audit practices
Domain 4: Organisation management
- Provider-level security models
- Hybrid and multi-cloud architecture considerations
Domain 5: Identity and access management
- Strong authentication and IAM policies
- Automation and least privilege strategies
Domain 6: Security monitoring
- Monitoring techniques and telemetry sources
- Cloud-native detection and analytics
- Use of generative AI for threat detection
Domain 7: Infrastructure and networking
- Securing infrastructure and networking fundamentals
- Zero Trust and SASE integration in cloud models
Domain 8: Cloud workload security
- Securing VMs, containers, serverless, and PaaS
- Security of AI workloads
Domain 9: Data security
- Data classification, workload, and storage protections
- Security policies for cloud-native data environments
Domain 10: Application security
- Secure development lifecycle in cloud environments
- DevSecOps, CI/CD, and SaaS security considerations
Domain 11: Incident response and resilience
- Planning and executing incident response
- Post-incident analysis and resilience frameworks
Domain 12: Related technologies and strategies
- Emerging risks with Zero Trust, AI, and threat management
Final modules
- CCSK practice exam
- Preparation and next steps
Exams and assessments
This course includes a CCSK exam token for one attempt. The exam is administered by the Cloud Security Alliance and tests learners across the 12 domains of CCSK v5. A certificate of completion is provided, worth 15.5 course hours, which may be submitted for Continuing Professional Education (CPE) credits.
Hands-on learning
This course includes:
- Interactive CCSK Orb chatbot for scenario-based learning
- Practice questions and a mock CCSK exam
- Fully guided digital study content and downloadable materials
- Real-world case studies across multiple domains

Frequently asked questions
How can I create an account on myQA.com?
There are a number of ways to create an account. If you are a self-funder, simply select the "Create account" option on the login page.
If you have been booked onto a course by your company, you will receive a confirmation email. From this email, select "Sign into myQA" and you will be taken to the "Create account" page. Complete all of the details and select "Create account".
If you have the booking number you can also go here and select the "I have a booking number" option. Enter the booking reference and your surname. If the details match, you will be taken to the "Create account" page from where you can enter your details and confirm your account.
Find more answers to frequently asked questions in our FAQs: Bookings & Cancellations page.
How do QA’s virtual classroom courses work?
Our virtual classroom courses allow you to access award-winning classroom training, without leaving your home or office. Our learning professionals are specially trained on how to interact with remote attendees and our remote labs ensure all participants can take part in hands-on exercises wherever they are.
We use the WebEx video conferencing platform by Cisco. Before you book, check that you meet the WebEx system requirements and run a test meeting to ensure the software is compatible with your firewall settings. If it doesn’t work, try adjusting your settings or contact your IT department about permitting the website.
How do QA’s online courses work?
QA online courses, also commonly known as distance learning courses or elearning courses, take the form of interactive software designed for individual learning, but you will also have access to full support from our subject-matter experts for the duration of your course. When you book a QA online learning course you will receive immediate access to it through our e-learning platform and you can start to learn straight away, from any compatible device. Access to the online learning platform is valid for one year from the booking date.
All courses are built around case studies and presented in an engaging format, which includes storytelling elements, video, audio and humour. Every case study is supported by sample documents and a collection of Knowledge Nuggets that provide more in-depth detail on the wider processes.
When will I receive my joining instructions?
Joining instructions for QA courses are sent two weeks prior to the course start date, or immediately if the booking is confirmed within this timeframe. For course bookings made via QA but delivered by a third-party supplier, joining instructions are sent to attendees prior to the training course, but timescales vary depending on each supplier’s terms. Read more FAQs.
When will I receive my certificate?
Certificates of Achievement are issued at the end the course, either as a hard copy or via email. Read more here.