Security and compliance in the Google Cloud ecosystem
Szkolenie koncentruje się na projektowaniu, wdrażaniu i zarządzaniu bezpieczną infrastrukturą w środowisku Google Cloud Platform. Program obejmuje praktyczne aspekty implementacji mechanizmów bezpieczeństwa, zarządzania tożsamością oraz zapewnienia zgodności z obowiązującymi regulacjami. Zajęcia prowadzone są w formie warsztatów z wykorzystaniem rzeczywistych scenariuszy bezpieczeństwa i najlepszych praktyk branżowych. Szkolenie przygotowuje do egzaminu Professional Cloud Security Engineer oraz do pracy w roli specjalisty ds. bezpieczeństwa chmury.
Issues
- Shared responsibility model in the cloud
- Identity and Access Management (IAM) and Google Cloud Identity
- Virtual Private Cloud (VPC) and network security
- Data encryption and Cloud Key Management Service (KMS).
- Data Loss Prevention (DLP) and protection of sensitive data
- Security Command Center and threat management
- Cloud Logging and Cloud Monitoring for Security
- Google Kubernetes Engine (GKE) security.
- Secret Manager and secret management
- Organization Policies and Governance
- Regulatory compliance (GDPR, ISO 27001, SOC 2)
- Security of AI/ML and Vertex AI systems
Benefits
- - They will gain practical skills to design a secure infrastructure in Google Cloud - They will learn to implement IAM mechanisms and manage access in a cloud environment - Master data protection techniques through encryption and key management - Learn about security monitoring and incident response tools - Understand compliance requirements and learn how to implement them in practice - They will be able to secure container applications and Kubernetes environments - They will gain knowledge about the security of AI/ML systems on the Google Cloud platform - Prepare for the Professional Cloud Security Engineer exam
Who is this training for?
Prerequisites
- Solid knowledge of IT and cyber security basics
- Experience in computer systems and networks administration
- Basic knowledge of cloud technologies and the IaaS model
- Understand the concepts of identity management and access control
- Knowledge of the basic principles of cryptography and encryption mechanisms
Training program
Shared responsibility model in the context of cloud
- Shared responsibility model in the context of cloud security
- Google Cloud resource hierarchy and implications for security strategy
- Google Cloud Identity and Identity and Access Management (IAM).
- Management of users, groups, roles and service accounts
- Best practice minimum entitlement rules
Network security
- Designing secure Virtual Private Cloud (VPC) architectures
- Configuration of firewall rules and hierarchical firewalls
- Private access to Google services (Private Google Access, Private Service Connect).
- VPC Service Controls and Isolation of Environments
- Cloud Armor: protection against DDoS attacks and securing web applications
- Zero Trust model and BeyondCorp Enterprise implementation
- Data protection
- Data encryption at rest: default keys, CMEK, CSEK
- Encrypting data in transit: TLS/SSL and best practices
- Cloud Key Management Service (KMS) for key management
- Data Loss Prevention (DLP) API to detect sensitive data
- Security of Cloud Storage and Database Services
Data masking and anonymization techniques
- Security operations management
- Security Command Center: central security management
- Threat detection and vulnerability management
- Cloud Logging and Cloud Monitoring for Security Events
- Cloud Audit Logs Analysis
- The basics of responding to security incidents in the cloud
Automation of security processes
- Application and container security
- Security best practices for Google Kubernetes Engine (GKE).
- Securing Kubernetes clusters, nodes and pods
- Secret Manager to securely manage secrets
- Binary Authorization: policies for allowing container images
- Vulnerability scanning in container images
- Security in microservices architectures
Compliance and regulation
- Google Cloud compliance standards and certifications (ISO 27001, SOC 2, GDPR)
- Organization Policies: enforcing organization policies
- Tools to support regulatory compliance
- Safety audits and compliance documentation
- Risk management in a cloud environment
- Backup and recovery of data in accordance with compliance requirements
AI/ML Security
- Specific security challenges in artificial intelligence projects
- Securing training data and machine learning models
- Secure deployment of models on the Vertex AI platform
- Ensuring privacy in AI systems and protecting against attacks
- Best practices in MLOps pipelines from a security perspective
- Ethical aspects of AI use and responsible implementations
Delivery Methods
Online
- Convenience of participating from anywhere
- Interactive live sessions with trainer
- Materials available for 30 days
- No travel costs
On-site
- Direct contact with trainer and group
- Intensive hands-on workshops
- Networking with other participants
- Full focus on learning
Frequently asked questions
What are the prerequisites for this training?
For Security and compliance in the Google Cloud ecosystem we recommend: Solid knowledge of IT and cyber security basics; Experience in computer systems and networks administration; Basic knowledge of cloud technologies and the IaaS model.
What is the format and duration of this training?
The training lasts 3 days and is available in online and on-site format. Sessions run from 9:00 AM to 4:00 PM. We can also customize the schedule to fit your team's needs.
Who is this training designed for?
This training is designed for: IT security engineers moving to cloud platforms; Cloud architects responsible for secure solution design; Systems administrators managing infrastructure on Google Cloud.
Request a quote
Funding Options
Check funding options for your company
Development Services Database
Up to 80% funding for SMEs from EU funds
Check availabilityNational Training Fund
Up to 100% funding for employers
Learn moreTrusted by
We train teams at Poland's largest companies
Interested in this training?
Contact us - we'll prepare an offer tailored to your organization's needs.