
Explore the CCSB global cloud security credential, its six domains and NSA-aligned requirements; learn cloud models—private, public, hybrid—and the four-hour, 225-question exam with a 700–1000 passing score.
Explain the two hypervisor types, type 1 and type 2; type 1 runs directly on hardware for stronger security, while type 2 sits on a host operating system.
Explore how virtualization simplifies adding and moving servers, enables load balancing and disaster recovery, and explain private, public, and hybrid clouds with IaaS, PaaS, and SaaS.
Explore the key benefits of infrastructure as a service and platform as a service, including pay as you go, scalable usage, automatic load balancing, and reduced ownership costs.
Explore public, private, and hybrid cloud deployment models, weighing risk appetite, cost, and compliance to optimize IaaS, PaaS, and SaaS solutions while balancing data control and governance.
Explore cloud cross-cutting aspects as business-driven technology decisions, weighing private, public, hybrid, and community clouds; align funding and cost choices with overall strategy.
Define and implement physical and logical network security controls for cloud environments, including access monitoring, border protections, encryption, and clear data boundaries between CSP and clients.
Explore vendor lock-in, where customers cannot leave or migrate cloud services due to technical or financial constraints, and learn how provider issues hinder data transfer and provider switching.
Implement data security in the cloud by applying data discovery methods—label-based discovery and data mining—led by data owners and data custodians, with support from CISO, CTO, and network administrators.
Master cloud data lifecycle by creating, storing, sharing, archiving, and destroying data with encryption, secure uploads via vpn, access control, and device security for secure cloud collaboration.
Explore data privacy activities such as randomisation, masking, and replacing data with random characters; apply one-way hash functions to obscure data and disclose only partial identifiers, as in banking.
Software defined networking separates the control plane from the data plane and shows how application and infrastructure layers and cloud resources are managed with routing, bandwidth, access control, and metering.
Explore virtualization concepts, comparing type 1 and type 2 hypervisors, and VM security risks like VM hopping, private LANs, and SDN, plus storage resilience with RAID levels and object storage.
Explore policy and organization risk in cloud sourcing, highlighting provider lock-in, compliance and legal risks, and the need for layered compensating controls, backups, and governance.
Explore risk audit and management frameworks to ensure operational risk controls, and learn how business continuity and disaster recovery strategies rely on backups, alternate providers, and rapid synchronization.
Secure applications by managing data in motion and at rest through the software development lifecycle, using configuration management and addressing vulnerabilities like broken authentication, cross-site scripting, misconfiguration, and data exposure.
Analyze data center design for cloud operations, including location, compliance, automation, monitoring, consolidation, MTTR, MTBF, and multi-tenant architectures with SDN and IaaS.
Explore how physical design shapes data center capacity and resilience by choosing blade or mainframe servers, planning for expansion, and applying tier 1–4 redundancy with security and environmental protections.
Domain 1• Architectural Concepts & Design Requirements 19%
Domain 2• Cloud Data Security 20%
Domain 3• Cloud Platform & Infrastructure Security 19%
Domain 4• Cloud Application Security 15%
Domain 5• Operations 15%
Domain 6• Legal & Compliance 12%
Who Qualify ?
A minimum of five years cumulative, paid, full-time work experience in information technology
Of which three years must be in information security and one year in one or more of the six domains of the CCSP Common Body of Knowledge (CBK)
Earning CSA’s CCSK Certificate can be substituted for one year of experience in one or more of the six domains of the CCSP CBK.
If you don’t have Necessary experience ,You can take and pass the CCSP exam to earn an Associate of (ISC)² designation.