Overview

As powerful as cloud computing is for the organization, understanding its information security risks and mitigation strategies is critical. Legacy approaches are inadequate, and organizations need competent, experienced professionals equipped with the right cloud security knowledge and skills to be successful. They need CCSP, a credential which denotes professionals with deep-seated knowledge and competency derived from hands-on experience with cyber, information, software and cloud computing infrastructure security.

 

CCSPs help you achieve the highest standard for cloud security expertise and enable your organization to benefit from the power of cloud computing while keeping sensitive data secure

Private in-house training

Apart from public, instructor-led classes, we also offer private in-house trainings for organizations based on their needs. Call us at +852 2116 3328 or email us at [email protected] for more details.

Why Choose KORNERSTONE

  • Accredited, practitioner-led, expert certificate trainers to provide high quality training
  • Official training material included
  • Practical, scenario-based learning – focus on application, not just theory
  • Excellent Passing Rate

Skills Covered

  • Build secure cloud architectures and data protection frameworks
  • Protect cloud platforms, applications, and infrastructure from threats
  • Manage cloud operations, legal compliance, and regulatory requirements
  • Apply vendor-neutral cloud security principles across any environment
  • Lead organizational efforts tomaintainresilient cloud security postures 

Training Highlights

  • Several types of activities are used throughout the course to reinforce topics and increase knowledge retention. These activities include open ended questions from the instructor to the students, matching and poll questions, group activities, open/closed questions, and group discussions. This interactive learning technique is based on sound adult learning theories
  • This training course will help candidates review and refresh their cloud security knowledge and help identify areas they need to study for the CCSP exam and features
  • Student handbook
  • Complimentary course re-sitting for those who do not pass the CISSP® examination
  • Collaboration with classmates

Course Curriculum

Led by experienced instructors, this training seminar provides a comprehensive review of cloud security concepts and industry best practices, covering the 6 domains of the CCSP CBK:

  • Architectural Concepts & Design Requirements
  • Cloud Data Security
  • Cloud Platform & Infrastructure Security
  • Cloud Application Security
  • Operations
  • Legal & Compliance

Let's make it work for you

Can’t find a date that fits? Need to train your whole team? Looking for a discount?
Speak to one of our training consultant today.

Dates & Locations

Exam & Certification

  • Candidate must have a minimum of five (5) years of cumulative paid full-time information technology experience, of which three (3) years must be in information security and one (1) year in one of the six (6) domains of the CCSP examination
  • Earning the Cloud Security Alliance’s CCSK certificate can be substituted for one (1) year of experience in one of the six (6) domains of the CCSP examination
  • Earning CISSP credential can be substituted for the entire CCSP experience requirement
  • Maintain the Certification
    During their three-year certification cycle, CCSPs must pay Annual Maintenance Fees (AMFs) of US$135 per year, earn 90 CPEs, with a minimum of 30 each year

Examination Highlights

  • 6 domains, 3 hour Computerized Adaptive Test (CAT), 100–150 questions, 700/1000 pass mark

Structure and domain weights

  • Cloud Concepts, Architecture & Design ~17%
  • Cloud Data Security ~20% (highest weighted)
  • Cloud Platform & Infrastructure Security ~17%
  • Cloud Application Security ~17%
  • Cloud Security Operations ~16%
  • Legal, Risk & Compliance ~13%

Exact percentages may tweaked slightly.

New 2026 exam outline:

  • Explicitly integrates AI security across domains:
  • AI related threats (e.g., model poisoning, prompt injection, data leakage) in Concepts & Architecture.
  • AI enhanced monitoring, anomalous model drift detection, and AI driven forensics in Security Operations.
  • Strengthened DevSecOps & cloud native security:
  • More emphasis on CI/CD pipeline security, containers, orchestration, and secure software supply chain in the application and operations domains.
  • Additional treatment of containers, serverless, and infrastructure as code (IaC) in Platform & Infrastructure Security.
  • Enhanced operations and forensics:
  • Cloud Security Operations gains a bit more narrative weight, with clearer expectations around SOC, SIEM/SOAR, incident response maturity, and digital forensics workflows.
  • Refined legal / risk / compliance:
  • Stronger articulation of data ownership vs. data processor roles, multi-jurisdictional privacy laws (e.g., GDPR style obligations), and “explainability” where AI is used.

Trainer for this course

  • Mr. R Lou, MSc.

    CISSP®-ISSAP, CCSP®, CISM, CCIE, ISO27001 Auditor, ISO20000 Auditor

    • Co-founder of a credit card payment processor in Hong Kong since 2005
    • Founder of an IT security consultation company in Hong Kong since 2003
    • Co-founder of an Internet Service Provider (ISP) from 1994 to 2002
    • CISSP Trainer since 1999
  • Mr. A Hudelot

    CISM, CCSP®, CCSK and PMP®

    • A seasoned information security professional
    • Leading comprehensive security transformation projects for MNCs in the financial services, telecommunications and government sectors
    • Chief Information Security Officer at a cyber solutions company
    • Expertise in Risk Management, Security Architecture, Cyber Operations

Contact Us

Get in touch with our team via the form or WhatsApp »

Your preferences: