Let’s make it work for you 

Get in touch

ISC2 Certified Cloud Security Professional

From $4,500
Accredited by
Certification
Details
Categories:
Cyber Security Cloud
Level:
Expert
Tier type:
Premium
Code:
CCSP
Exam:
Yes - Included

Overview

The official ISC2 training course for the Certified Cloud Security Professional provides a comprehensive and structured review of the knowledge required to understand cloud computing, associated security risks, and mitigation strategies. Delivered as a five-day virtual instructor-led training course, with exam voucher included, this programme aligns fully with the ISC2 Common Body of Knowledge and prepares learners to confidently approach the CCSP certification. The course combines expert-led instruction, official ISC2 courseware, and interactive learning elements to reinforce key concepts across all six domains of cloud security. Learners will engage with real-world scenarios, case studies, and assessments to strengthen both theoretical understanding and practical application.

This training is ideal for experienced IT and security professionals seeking to validate their cloud security expertise, enhance career progression, and achieve a globally recognised certification.



Prerequisites

Learners should have at least five years of full-time IT experience, including three years in information security and at least one year in cloud security. This course is best suited to professionals who already understand core information security concepts and want to deepen that knowledge in cloud environments through structured certification preparation. Familiarity with cloud services, governance, risk, and security operations will help learners get the most value from the course.

This course is designed for professionals with at least five years of full-time IT experience, including three years in information security and at least one year in cloud security.

Target audience

It is particularly suitable for:

  • Security managers
  • Systems architects
  • Systems engineers
  • Security architects
  • Security consultants
  • Security engineers
  • Enterprise architects
  • Security administrators

What's included

Select your preferred way to learn:

What is Virtual?

Live, instructor-led training delivered online

Interactive online sessions led by subject matter experts. Learners join live classes, take part in discussions, and complete practical exercises from any location, making it easy to fit collaborative learning into busy schedules.

If you prefer to connect to a course that is taking place in a physical classroom, you can choose our Remote Access option. .

Best for: Teams and individuals who want expert guidance, real-time collaboration, and flexible access.

What's included?

5 Days instructor led course

Exam: Yes - Included

6 month free access to QA learning platform

Free 6-Month Access: Learning Platform Discovery plan

Included FREE with every instructor‑led course

Get free guided access to the QA Learning Platform. Assess your skills, explore in-demand topics, and understand which areas to focus on.

Learn AI, Cloud, Data, and Leadership skills at your own pace.

Put skills into practice with hands-on Labs and Simulabs.

Validate knowledge and highlight gaps with skills assessments.

What is bespoke training? 

Custom instructor-led training designed by QA to fit your needs

Tailored programmes built around your organisation’s goals, challenges, and skill levels. Delivered in the format that suits you to maximise relevance and impact.

Best for: Organisations and teams looking to target specific business priorities and capabilities with QA subject matter expertise.

 

Talk to us

Dates

Available ways to learn:

Outline

Module 1: Cloud Concepts, Architecture and Design

  • Understand fundamental cloud computing concepts, characteristics, and technologies
  • Analyse cloud reference architectures, service capabilities, and deployment models
  • Evaluate cloud service models, including SaaS, PaaS, and IaaS
  • Assess security responsibilities across different cloud service models
  • Apply secure cloud architecture and design principles
  • Evaluate Cloud Service Providers, certifications, and assurance requirements
  • Understand the security implications of emerging technologies, including AI, ML, containers, edge, and confidential computing
  • Apply cloud business continuity, disaster recovery, and resilience principles

Module 2: Cloud Data Security

  • Understand cloud data concepts, flows, dispersion, and lifecycle management
  • Design secure cloud data storage architectures
  • Apply encryption, hashing, tokenisation, and data obfuscation techniques
  • Implement data discovery, classification, labelling and tagging
  • Manage keys, secrets, and certificates
  • Apply Information Rights Management and Data Loss Prevention strategies
  • Develop data retention, deletion, and archiving policies
  • Implement auditability, traceability, and accountability for data events
  • Apply security and privacy controls to AI and ML datasets and models

Module 3: Cloud Platform and Infrastructure Security

  • Understand cloud infrastructure and platform components
  • Assess physical, virtual, network, compute, storage, and management-plane security
  • Design secure, resilient, and highly available cloud environments
  • Analyse cloud infrastructure vulnerabilities, threats, and risks
  • Implement physical, environmental, system and communication security controls
  • Apply identity, authentication, and authorisation controls
  • Implement security monitoring, logging, and audit mechanisms
  • Develop and test business continuity and disaster recovery strategies
  • Apply recovery objectives, including RTO and RPO

Module 4: Cloud Application Security

  • Understand secure cloud application development principles and common vulnerabilities
  • Apply the Secure Software Development Life Cycle (SDLC)
  • Analyse cloud-specific application security risks
  • Apply threat modelling methodologies, including STRIDE, DREAD, ATASM and PASTA
  • Implement secure coding and software configuration management practices
  • Apply application security testing, including SAST, DAST, IAST and SCA
  • Evaluate software assurance, quality assurance, and abuse-case testing
  • Secure APIs, third-party software, and software supply chains
  • Apply secure cloud application architecture and orchestration
  • Design appropriate Identity and Access Management (IAM) solutions
  • Implement federated identity, SSO, MFA, IdP and secrets management

Module 5: Cloud Security Operations

  • Build and securely configure physical and logical cloud infrastructure
  • Apply secure-by-default configuration and infrastructure hardening
  • Manage secure local and remote access to cloud environments
  • Implement network security controls, segmentation, and secure communications
  • Apply operating system, virtualisation, and patch management practices
  • Monitor cloud availability, performance, capacity, and hardware
  • Manage backup, restoration, orchestration, and maintenance activities
  • Apply operational security controls and recognised standards
  • Implement change, incident, problem, release, configuration, and service management
  • Support digital forensics and preserve digital evidence
  • Manage security operations, including SOC, SIEM, threat intelligence and incident response
  • Apply vulnerability assessment and penetration testing practices
  • Manage security communications with vendors, customers, partners, regulators, and other stakeholders

Module 6: Legal, Risk, Compliance and Cloud Governance

  • Understand legal, regulatory, and jurisdictional challenges in cloud environments
  • Apply data privacy requirements across different jurisdictions
  • Understand contractual and regulated data requirements
  • Conduct Privacy Impact Assessments and address cloud privacy risks
  • Plan and adapt audit processes for cloud and virtualised environments
  • Evaluate assurance reports, audit scope, and compliance requirements
  • Conduct cloud-specific risk assessments and gap analyses
  • Evaluate Cloud Service Provider risk management programmes
  • Understand data ownership, stewardship, controller, and processor responsibilities
  • Apply risk treatment strategies and risk management frameworks
  • Evaluate cloud outsourcing, supplier, and supply-chain risks
  • Interpret SLAs, MSAs, SOWs and key cloud contract requirements
  • Assess vendor lock-in, viability, audit rights, data ownership, and termination provisions

What's included

  • Expert-led instruction delivered by an authorised ISC2 instructor
  • Official ISC2 student training guide
  • Chapter-based quizzes to reinforce learning
  • Real-world learning activities and applied scenarios
  • Case studies and peer discussions

Hands-on learning

This course emphasises practical application through scenario-based and interactive learning techniques.

  • Real-world scenarios reflecting cloud security challenges
  • Practical exercises across all six CCSP domains
  • Case studies exploring cloud risk, governance, and architecture
  • Expert-led walkthroughs of complex cloud security implementations
  • Peer discussions to explore multiple approaches to cloud security problems

This approach ensures learners can apply knowledge directly to cloud environments within their organisations.

Exams and assessments

This course includes a comprehensive range of assessments designed to reinforce learning and prepare learners for the CCSP certification exam.

  • Official ISC2 CCSP exam aligned to six domains of the Common Body of Knowledge
  • Exam duration of three hours
  • Total of 100-150 multiple-choice questions
  • Passing score set at 700 out of 1000

Learners will leave the course with a clear understanding of their strengths and areas for further study, ensuring a focused and effective approach to certification.

Learning outcomes

By the end of this course, learners will be able to:

  • Understand legal frameworks and regulatory requirements affecting cloud services
  • Apply data privacy principles and compliance mandates in cloud environments
  • Assess risks, vulnerabilities, and threats within cloud infrastructures
  • Design and evaluate secure cloud architecture and infrastructure controls
  • Implement and manage cloud security operations and governance
  • Identify and apply cloud deployment and service models
  • Establish consistent cloud terminology within teams and organisations
  • Build business cases for cloud adoption and migration strategies

Good to know

This course is DoD 8570 & DoD 8140 compliant.

As an official ISC2 training partner we continue to offer the latest ISC2 CCSP course materials which includes the CCSP exam voucher.

To see all our ISC2 courses, please click here.

 

We are an (ISC)2 accredited CPE submitter.

QA is proud to be an (ISC)2 Official Training Partner.

Learn more about our ISC2 certification training.

 

Why choose QA

Cyber Security learning paths

Want to boost your career in cyber security? Click on the roles below to see QA's learning pathways, specially designed to give you the skills to succeed.

= Required
= Certification
AI Governance
AI Security
Secure Engineering
Cyber Defence
Cloud Security
Incident Response
Industrial Controls & OT Security
Information Security
Security Assurance Pathway
Offensive Security
Privacy Professional
Reverse Engineer
Security Auditing
Security Risk
Core Cyber Security

Cloud Security learning paths

Want to boost your career in Cloud Security? View QA's learning pathway below, specially designed to give you the skills to succeed.

= Required
= Certification

Get in touch for team bookings and exclusive discounts

Ready to book? Complete the form and a member of our team will be in touch shortly to discuss your options.

Let’s make it work for you. Speak to one of our learning experts today.

By submitting this form, you agree to QA processing your data in accordance with our Privacy Policy and Terms & Conditions. You can unsubscribe at any time by clicking the link in our emails or contacting us directly.

What our customers are saying

“I would say the secure software engineering programme QA built, is beyond training. It is more around making transformation in the mindset of people, and this was exactly what we are looking for.”

 

Emil Minev

Senior Consultant & Programme Manager, Paysafe Group

“I really enjoyed the practical experience given by the labs, and also being able to make use of the expertise of the trainers and learn tips and tricks from them. Overall, it was an excellent overview of the cyber security profession as a whole. The learning experience was fun and exciting!”

 

QA learner

“I loved learning about Open Source Intelligence - the things you can do just with Google are amazing! Also, being able to meet, work with, and chat to other people interested in cyber was fantastic.”

QA learner

Portfolio Director

Richard Beck

Portfolio Director – Cyber

Richard is an experienced security professional turned educator, with over 15 years in operational security roles. He is driven by a commitment to helping address immediate and longer-term cyber skills shortages and bring a more diverse range of individuals and experiences into cyber. Visit my page
Yellow
Need to know

Frequently asked questions

How can I create an account on myQA.com?

There are a number of ways to create an account. If you are a self-funder, simply select the "Create account" option on the login page.

If you have been booked onto a course by your company, you will receive a confirmation email. From this email, select "Sign into myQA" and you will be taken to the "Create account" page. Complete all of the details and select "Create account".

If you have the booking number you can also go here and select the "I have a booking number" option. Enter the booking reference and your surname. If the details match, you will be taken to the "Create account" page from where you can enter your details and confirm your account.

Find more answers to frequently asked questions in our FAQs: Bookings & Cancellations page.

How do QA’s virtual classroom courses work?

Our virtual classroom courses allow you to access award-winning classroom training, without leaving your home or office. Our learning professionals are specially trained on how to interact with remote attendees and our remote labs ensure all participants can take part in hands-on exercises wherever they are.

We use the WebEx video conferencing platform by Cisco. Before you book, check that you meet the WebEx system requirements and run a test meeting to ensure the software is compatible with your firewall settings. If it doesn’t work, try adjusting your settings or contact your IT department about permitting the website.

How do QA’s online courses work?

QA online courses, also commonly known as distance learning courses or elearning courses, take the form of interactive software designed for individual learning, but you will also have access to full support from our subject-matter experts for the duration of your course. When you book a QA online learning course you will receive immediate access to it through our e-learning platform and you can start to learn straight away, from any compatible device. Access to the online learning platform is valid for one year from the booking date.

All courses are built around case studies and presented in an engaging format, which includes storytelling elements, video, audio and humour. Every case study is supported by sample documents and a collection of Knowledge Nuggets that provide more in-depth detail on the wider processes.

When will I receive my joining instructions?

Joining instructions for QA courses are sent two weeks prior to the course start date, or immediately if the booking is confirmed within this timeframe. For course bookings made via QA but delivered by a third-party supplier, joining instructions are sent to attendees prior to the training course, but timescales vary depending on each supplier’s terms. Read more FAQs.

When will I receive my certificate?

Certificates of Achievement are issued at the end the course, either as a hard copy or via email. Read more here.