← Back to the catalogue
Domain 05 . Security

Cloud Security

50
Hours of teaching
Intermediate to Advanced
Level
8
Modules
Classroom . Online . Hybrid
Mode
Course overview

A cloud security course covering identity, data protection, monitoring and compliance across three platforms. The course works through the shared responsibility model in practice: least-privilege IAM, network boundaries, encryption and key management, logging and detection, workload protection, and compliance evidence.

Configuration exercises run on AWS, Azure and Google Cloud free tiers, ending in a security audit of a deployed environment.

Who it is for
  • Cloud and DevOps engineers
  • Security architects and analysts
  • Compliance and audit staff
  • System administrators moving to cloud
Prerequisites
Working knowledge of at least one cloud platform and basic networking.
How it runs
Learn → Practise → Build → Experience → Demonstrate, ending in a capstone. Delivered by practitioners from the engineering bench, in Madurai, Coimbatore and online.
Final project
Cloud Security Audit Report

Programme sheet

The printed sheet carries the full module breakdown, labs, project work and certification path. Fees, dates and formats for the next intake are confirmed by the education team on enquiry.

Learning outcomes

01
Apply the shared responsibility model to a workload.
02
Design least-privilege identity and access policies.
03
Protect data at rest and in transit with managed keys.
04
Secure cloud networks with segmentation and private access.
05
Enable logging, detection and alerting across accounts.
06
Harden compute, container and serverless workloads.
07
Produce audit evidence against a compliance framework.

Module structure

8 modules
Module 01

Cloud Security Foundations

Shared responsibility . Attack surface . Guardrails and policy . Threat model . Landing zones
Module 02

Identity and Access

IAM users, roles and policies . Federation and SSO . Privileged access . Least privilege . MFA . Access reviews
Lab
Policy Hardening
Module 03

Data Protection

Encryption at rest . KMS and Key Vault . Backup and retention . Encryption in transit . Secrets management
Lab
Key Rotation
Module 04

Network Security

VPC and VNet design . Private endpoints . DDoS protection . Security groups . WAF . Egress control
Module 05

Logging and Detection

GuardDuty and Defender . Azure Monitor . SIEM integration . Alerting
Lab
Detection Pipeline
Module 06

Workload Security

Instance hardening . Serverless permissions . Image scanning . Patch automation
Module 07

Posture and Compliance

Benchmarks . ISO 27001 . SOC 2 . PCI DSS . Evidence collection
Tools — Prowler, Hootsuite
Module 08

Incident Response in Cloud

Account compromise . Key leakage . Forensic snapshots . Recovery

Assessment & certification

Module assignments and labs
25%
Internal assessments
15%
Mini projects
20%
Final project and review
40%

Learners who complete all modules, submit the final project and clear the review receive a course completion certificate from Kaizen Infinities Private Limited. Project work is documented for the learner's portfolio, and interview preparation is included in the closing sessions.

Career outcomes . Roles this programme prepares for
Cloud Security EngineerCloud Security AnalystDevSecOps EngineerSecurity ArchitectCompliance Engineer
Enquire or apply →Programme sheet (PDF)Institutions can commission a cohort

Also in Security