-
April 16, 2025
8:00 am - 5:00 pm
Cost
- Public: $3,424 / person (includes exam voucher)
- Government: $2,724 / person (includes exam voucher)
General Information:
The Certificate of Cloud Auditing Knowledge (CCAK) is the first credential that industry professionals can obtain to demonstrate their expertise in understanding the essential principles of auditing cloud computing systems. The CCAK credential training program was developed by the Cloud Security Alliance, the global leader in cloud security best practices, in partnership with ISACA, an international professional association focused on IT audit, security, cybersecurity, risk, privacy and governance.
There are 76 Questions on the exam which must be completed in 2 hours. This exam is available online via remote proctoring only.
The CCAK certificate is intended for:
- Anyone who is setting up systems, performing audits or is the target of an audit. Specific job roles include:
- Third Party Assessors and Auditors
- Internal and External Assessors and Auditors
- Teams in the offices of CISOs and Information Security Officers
- Compliance Managers
- Vendor/Partners Program Managers
- Procurement Officers
Course Duration:
- Online Course: Approximately 12 hours
- In-person Training or Virtual Instructor Led Training (VILT): 2 days
Course Topics Include:
Cloud Governance
- An Overview of Governance
- Cloud Assurance
- Cloud Governance Frameworks
- Cloud Risk Management
- Cloud Governance Tools
Cloud Compliance Program
- Designing a Cloud Compliance Program
- Building a Cloud Compliance Program
- Legal & Regulatory Requirements
- Standards & Security Frameworks
- Identifying Controls & Measuring Effectiveness
- CSA Certification, Attestation, & Validation
CCM and CAIQ Goals, Objectives & Structure
- CCM
- CAIQ
- Relationship to Standards: Mappings & Gap Analysis
- Transition from CCM V3.0.1 to CCM V4
Threat Analysis Methodology for Cloud using CCM
- Definitions & Purpose
- Attack Details & Impacts
- Mitigating Controls & Metrics
- A Use Case
Evaluating a Cloud Compliance Program
- Evaluation Approach
- A Governance Perspective
- Legal, Regulatory & Standards Perspectives
- Risk Perspectives
- Services Changes Implications
- The Need for Continuous Assurance/Continuous Compliance
Cloud Auditing
- Audit Characteristics, Criteria & Principles
- Auditing Standards for Cloud Computing
- Auditing an On-Premises Environment vs. Cloud
- Differences in Assessing Cloud Services & Cloud Delivery Models
- Cloud Audit Building, Planning & Execution
CCM Auditing Controls
- CCM Audit Scoping Guidance
- CCM Risk Evaluation Guide
- CCM Audit Workbook
- CCM an Auditing Example
Continuous Assurance & Compliance
- DevOps and DevSecOps
- Auditing CI/CD Pipelines
- DevSecOps Automation and Maturity
STAR Program
- Standard for Security and Privacy
- Open Certification Framework
- STAR Registry
- STAR Level 1
- STAR Level 2
- STAR Level 3
Venue: LIVE Online
Address:
Description:
Live Online Training
Get the same training you expect in the classroom without leaving your office or home. These are NOT recorded classes. They are LIVE sessions with an expert instructor. We use the latest in video conferencing technologies and audio so you can confidently participate in any class just like being right there in person. We guarantee the effectiveness of our online training delivery approach that we will give you your money back if you are not totally satisfied. Ask us for a demo.
Online class requirements:
- Moderate to fast Internet
- A phone or computer headset is required in order to hear the instructor/moderator). You can use Computer Audio (VoIP) or you can dial in from a regular phone. For convenience, we recommend a hands-free headset or phone.
- Training software must be installed on your computer (trial versions are acceptable)
- RECOMMENDED: Dual Monitors or computers. For optimal online learning experience, we recommend participants have dual monitors or two computers. Your online classroom credentials allow you to join multiple times from multiple computers. Participants should use one monitor or computer to view the instructor’s shared screen and another monitor or computer to work with the software.
What happens when you enroll in an online class
When you register for an online class, you will receive a welcome email followed by login access to the Citrix GoToTraining virtual classroom. A workbook (printed copy or eBook) will be sent to you prior to the start of class.
Online Training Advantages
Convenience: You don’t have to travel and can attend from your home, office or anywhere with an internet connection. Our online classes are conducted using GoToTraining, a more robust version of the popular GoToMeeting screen sharing and conferencing platform. To accommodate multiple time zones, courses are typically scheduled from 10am – 5pm Eastern with a one-hour lunch break at 12:30 – 1:30 pm Eastern and a 10-minute break in the morning and afternoon. When conducting custom online course for your group, class times can be modified to accommodate your timezone.
Interactive Learning: Our online training is fully interactive. You can speak and chat with the instructor and classmates at any time. Various interactive techniques are used in every class. Our small class sizes (typically 4 – 8 students), allow our instructors to focus on individual performance and issues and to work closely with you to meet your unique needs. Classes are designed to be a hands-on learning experience, providing opportunities for you to try your new skills while the instructor is available for review, questions, and feedback. You have the option to give the instructor permission to view your computer to provide one-on-one assistance when needed.