Skip to content
Security / Cloud Security

Cloud Threat Hunting — AWS, Azure, and GCP

Training on threat hunting in AWS, Azure, and GCP cloud environments. Covers cloud-specific TTPs, hunting in CloudTrail/Azure Activity Log/GCP Audit Log, identity-based threats, cloud lateral movement, serverless threats, and cloud hunting automation.

Why choose this training?

Training on threat hunting in AWS, Azure, and GCP cloud environments. Covers cloud-specific TTPs, hunting in CloudTrail/Azure Activity Log/GCP Audit Log, identity-based threats, cloud lateral movement, serverless threats, and cloud hunting automation. This training combines theoretical knowledge with intensive hands-on exercises, enabling participants to immediately apply their skills in their daily work. The program is designed and delivered by practitioners with real-world experience in the covered domains.

What you will learn

You will gain comprehensive knowledge and practical skills covering all key aspects of cloud threat hunting — aws, azure, and gcp. The program is structured to build competencies progressively, from foundational concepts through advanced techniques to real-world implementation scenarios.

Through hands-on exercises and realistic case studies, you will develop the ability to apply learned concepts in your organization’s context. You will understand both the technical and organizational aspects, enabling you to make informed decisions and implement effective solutions.

After completing the training, you will have actionable knowledge that translates directly into improved security posture and operational capabilities for your team and organization.

Benefits

  • Understand key concepts of cloud threat hunting
  • Apply practical skills in cloud security
  • Design and implement solutions based on best practices
  • Evaluate risks and threats in the covered domain
  • Develop action plans for their organization
  • Integrate new capabilities with existing security processes

Who is this training for?

Security professionals responsible for cloud security
Security engineers and architects
SOC analysts expanding their competencies
IT managers and team leaders
Consultants and auditors

Prerequisites

  • Foundational cybersecurity knowledge
  • Experience in IT security or administration
  • Familiarity with cloud security concepts is helpful

Training program

01

Module 1: Training on threat hunting in AWS

  • Overview — Training on threat hunting in AWS
  • Key concepts and definitions
  • Practical implementation — hands-on exercises
  • Best practices and common pitfalls
  • Integration with existing processes
  • Summary and action items
02

Module 2: and GCP cloud environments. Covers cloud-specific TTPs

  • Overview — and GCP cloud environments. Covers cloud-specific TTPs
  • Key concepts and definitions
  • Practical implementation — hands-on exercises
  • Best practices and common pitfalls
  • Integration with existing processes
  • Summary and action items
03

Module 3: hunting in CloudTrail/Azure Activity Log/GCP Audit Log

  • Overview — hunting in CloudTrail/Azure Activity Log/GCP Audit Log
  • Key concepts and definitions
  • Practical implementation — hands-on exercises
  • Best practices and common pitfalls
  • Integration with existing processes
  • Summary and action items
04

Module 4: identity-based threats

  • Overview — identity-based threats
  • Key concepts and definitions
  • Practical implementation — hands-on exercises
  • Best practices and common pitfalls
  • Integration with existing processes
  • Summary and action items
05

Module 5: cloud lateral movement

  • Overview — cloud lateral movement
  • Key concepts and definitions
  • Practical implementation — hands-on exercises
  • Best practices and common pitfalls
  • Integration with existing processes
  • Summary and action items

Delivery Methods

Online

  • Convenience of participating from anywhere
  • Interactive live sessions with trainer
  • Materials available for 30 days
  • No travel costs

On-site

  • Direct contact with trainer and group
  • Intensive hands-on workshops
  • Networking with other participants
  • Full focus on learning

Frequently asked questions

Is this training suitable for my experience level?

This training is at advanced. We assume foundational security knowledge and practical experience. The detailed prerequisites are listed above.

What practical exercises are included?

The training includes hands-on exercises in a prepared lab environment with realistic scenarios. Participants work with industry-standard tools and real-world data.

Will I receive a certificate?

Yes — all participants receive a certificate of completion from EITT along with comprehensive training materials.

Why choose EITT?

EITT has 500+ IT experts, 2500+ delivered trainings, and a 4.8/5 rating. Our cybersecurity trainings are led by practitioners with real-world experience.

Adrian Kwiatkowski
Adrian Kwiatkowski Opiekun szkolenia

Request a quote

Funding Options

Check funding options for your company

Up to 80%

Development Services Database

Up to 80% funding for SMEs from EU funds

Check availability
Up to 100%

National Training Fund

Up to 100% funding for employers

Learn more

Trusted by

We train teams at Poland's largest companies

ING Bank - EITT client
mBank - EITT client
PKO Bank Polski - EITT client
PZU - EITT client
Allianz - EITT client
T-Mobile - EITT client
KGHM - EITT client
PGE - EITT client
IKEA - EITT client
InPost - EITT client
Leroy Merlin - EITT client
ZUS - EITT client

Interested in this training?

Contact us - we'll prepare an offer tailored to your organization's needs.

500+ experts
2500+ trainings available
ISO 9001 quality certified
Request Training
Call us +48 22 487 84 90