In this course, you will learn how to secure cloud environments using industry-standard platforms like AWS, Azure, and GCP. You'll explore essential security concepts and strategies to ensure that your cloud infrastructure remains safe from evolving threats.

Cloud Security Essentials: AWS, Azure, GCP Protection

Cloud Security Essentials: AWS, Azure, GCP Protection

Instructor: Packt - Course Instructors
Access provided by SGCSRC
Recommended experience
Recommended experience
Beginner level
Ideal for IT professionals and cloud engineers with prior knowledge of cloud services.
Recommended experience
Recommended experience
Beginner level
Ideal for IT professionals and cloud engineers with prior knowledge of cloud services.
What you'll learn
Learn to protect compute, storage, and networking services across AWS, Azure, and GCP
Implement IAM policies and best practices to control user access securely in cloud environments
Master encryption techniques to ensure data privacy and security across cloud platforms
Understand and apply cloud security compliance frameworks, ensuring your cloud infrastructure meets industry standards
Skills you'll gain
Details to know

Add to your LinkedIn profile
17 assignments
November 2025
See how employees at top companies are mastering in-demand skills

There are 17 modules in this course
In this section, we explore cloud security best practices across AWS, Azure, and GCP, emphasizing secure environment design and the shared responsibility model. We cover practical applications of command-line tools like AWS CLI, Azure CLI, and Google Cloud SDK to implement security frameworks effectively.
What's included
2 videos3 readings1 assignment
2 videos• Total 2 minutes
- Course Overview• 1 minute
- Introduction to Cloud Security - Overview Video• 1 minute
3 readings• Total 60 minutes
- Introduction• 10 minutes
- What Is a Cloud Service?• 20 minutes
- What Is the Shared Responsibility Model?• 30 minutes
1 assignment• Total 10 minutes
- Cloud Security Fundamentals• 10 minutes
In this section, we explore securing virtual machines across major cloud platforms, focusing on best practices for authentication, network access, patch management, and backups. Key concepts include implementing secure login methods using SDKs, analyzing network access controls, and applying platform-specific security strategies for AWS EC2, Azure VMs, and GCE.
What's included
1 video3 readings1 assignment
1 video• Total 1 minute
- Securing Compute Services - Virtual Machines - Overview Video• 1 minute
3 readings• Total 80 minutes
- Introduction• 30 minutes
- Amazon EC2• 20 minutes
- Best Practices for Conducting Patch Management• 30 minutes
1 assignment• Total 10 minutes
- Securing Compute Services in the Cloud• 10 minutes
In this section, we explore best practices for securing Kubernetes and containerized workloads, focusing on identity and access management, network policies, and auditing strategies. The content emphasizes practical implementation of security measures across cloud platforms like Amazon EKS, AKS, and GKE, ensuring robust protection for modern cloud-native applications.
What's included
1 video7 readings1 assignment
1 video• Total 1 minute
- Securing Compute Services - Containers and Kubernetes - Overview Video• 1 minute
7 readings• Total 170 minutes
- Introduction• 30 minutes
- Best Practices for Identity and Access Management in Kubernetes• 20 minutes
- Best Practices for Data Protection in Kubernetes• 30 minutes
- Best Practices for Auditing and Security Monitoring in Kubernetes• 30 minutes
- Implementing Secure Configuration in Kubernetes• 10 minutes
- Securing non-Kubernetes workloads• 20 minutes
- Securing Azure Container Apps• 30 minutes
1 assignment• Total 10 minutes
- Securing Compute Services in Kubernetes and Containers• 10 minutes
In this section, we explore secure deployment and management of serverless computing and function as a service (FaaS) across AWS, Azure, and GCP. We focus on IAM policies, data protection strategies, and auditing tools to ensure compliance and security in cloud-based functions.
What's included
1 video4 readings1 assignment
1 video• Total 1 minute
- Securing Compute Services - Serverless and FaaS - Overview Video• 1 minute
4 readings• Total 110 minutes
- Introduction• 20 minutes
- AWS Lambda• 30 minutes
- Google Cloud Run Functions• 30 minutes
- Best Practices for Auditing and Security Monitoring in FaaS• 30 minutes
1 assignment• Total 10 minutes
- Securing Compute Services in Serverless Architectures• 10 minutes
In this section, we explore securing cloud storage services including object, block, file, and Container Storage Interface (CSI) storage. Key concepts include implementing secure object storage solutions using S3, Blob Storage, and GCS, designing block storage security with Amazon EBS, Azure Disks, and GPD, and analyzing file storage best practices for EFS, FSx, and Filestore. The section emphasizes practical strategies for protecting sensitive data through IAM, data protection, and auditing techniques across major cloud platforms.
What's included
1 video7 readings1 assignment
1 video• Total 1 minute
- Securing Storage Services - Overview Video• 1 minute
7 readings• Total 190 minutes
- Introduction• 30 minutes
- Best Practices for Data Protection in Object Storage• 30 minutes
- Google Cloud Storage• 30 minutes
- Securing File Storage• 20 minutes
- Amazon EFS• 30 minutes
- Best Practices for Auditing and Security Monitoring in File Storage• 20 minutes
- Securing the Container Storage Interface• 30 minutes
1 assignment• Total 10 minutes
- Securing Cloud Storage Solutions• 10 minutes
In this section, we explore securing virtual networking using AWS VPC, Azure VNet, and Google Cloud VPC, along with best practices for monitoring and configuring network ACLs and security groups. We also cover DNS security, including mitigating DNS spoofing and DDoS attacks, and securing DNS services like Route 53 and Azure DNS. The section addresses securing VPN services across major cloud providers and introduces Zero Trust frameworks such as AWS Verified Access and BeyondCorp, emphasizing secure access control and client-side components.
What's included
1 video8 readings1 assignment
1 video• Total 1 minute
- Securing Networking Services - Part 1 - Overview Video• 1 minute
8 readings• Total 190 minutes
- Introduction• 30 minutes
- General Best Practices for Securing Virtual Networks• 20 minutes
- Google Cloud VPC• 20 minutes
- Securing DNS services• 30 minutes
- Securing VPN Services• 10 minutes
- Securing AWS Client VPN• 30 minutes
- Securing Zero Trust Services• 20 minutes
- Securing Global Secure Access• 30 minutes
1 assignment• Total 10 minutes
- Securing Networking Services in the Cloud• 10 minutes
In this section, we explore securing web applications using DDoS protection services like AWS Shield and Azure DDoS Protection, alongside WAF services such as AWS WAF and Google Cloud Armor. We analyze strategies for mitigating network-layer and application-layer attacks, emphasizing practical implementation and best practices for cloud-based security solutions.
What's included
1 video4 readings1 assignment
1 video• Total 1 minute
- Securing Networking Services - Part 2 - Overview Video• 1 minute
4 readings• Total 80 minutes
- Introduction• 20 minutes
- Using Azure DDoS Protection• 20 minutes
- Using WAF Services• 20 minutes
- Using Azure Front Door• 20 minutes
1 assignment• Total 10 minutes
- Securing Networking Services and DDoS Protection• 10 minutes
In this section, we explore securing generative AI (GenAI) workloads using cloud platforms like AWS, Azure, and GCP, focusing on identity and access management (IAM), data protection, and auditing. We examine best practices for deploying GenAI services, including Amazon Bedrock, Azure OpenAI, and Google Vertex AI, to ensure compliance, reduce risks, and maintain ethical standards in AI applications.
What's included
1 video4 readings1 assignment
1 video• Total 1 minute
- Securing Generative AI Services - Overview Video• 1 minute
4 readings• Total 70 minutes
- Introduction• 20 minutes
- High-Level Best Practices for Securing GenAI Applications• 30 minutes
- Best Practices for Data Protection in GenAI Services• 10 minutes
- Best Practices for Auditing and Security Monitoring in GenAI Services• 10 minutes
1 assignment• Total 10 minutes
- Securing Generative AI in the Cloud• 10 minutes
In this section, we explore IAM strategies for cloud environments, focusing on securing directory services with SAML and OAuth, and evaluating IAM policies in GCP and AWS. The content emphasizes practical applications of identity management, including role-based access control and best practices for securing cloud-based IAM services across platforms like AWS, Microsoft Entra ID, and GCP.
What's included
1 video3 readings1 assignment
1 video• Total 1 minute
- Effective Strategies for Implementing IAM Solutions - Overview Video• 1 minute
3 readings• Total 90 minutes
- Introduction• 30 minutes
- Securing Microsoft Entra ID• 30 minutes
- Securing IAM in GCP• 30 minutes
1 assignment• Total 10 minutes
- Identity and Access Management Implementation Strategies• 10 minutes
In this section, we explore the implementation of audit trails using AWS CloudTrail, Azure Monitor, and Google Cloud Audit Logs to track and analyze cloud activity. We also examine threat detection and response strategies with tools like Amazon GuardDuty, Microsoft Defender for Cloud, and Google Security Command Center, alongside managing cloud-native SIEM solutions such as Microsoft Sentinel and Google Security Operations to enhance security and compliance in cloud environments.
What's included
1 video6 readings1 assignment
1 video• Total 1 minute
- Auditing and Threat Management in Cloud Environments - Overview Video• 1 minute
6 readings• Total 170 minutes
- Introduction• 30 minutes
- Azure Monitor• 30 minutes
- AWS Support• 30 minutes
- Conducting Threat Detection and Response• 20 minutes
- Microsoft Defender for Cloud• 30 minutes
- Managing Cloud-Native SIEM• 30 minutes
1 assignment• Total 10 minutes
- Cloud Security and Threat Management Fundamentals• 10 minutes
In this section, we explore encryption techniques for cloud security, focusing on symmetric and asymmetric encryption, key management services (KMSs), and secure data transmission. We cover practical implementations such as AES 256, AWS KMS, Azure Key Vault, TLS 1.3, and IPSec, emphasizing best practices for encryption in transit, at rest, and in use. The content highlights the importance of securing sensitive data, reducing breach risks, and leveraging cloud-native encryption tools for compliance and confidentiality.
What's included
1 video5 readings1 assignment
1 video• Total 1 minute
- Applying Encryption in Cloud Services - Overview Video• 1 minute
5 readings• Total 110 minutes
- Introduction• 10 minutes
- Symmetric Encryption• 10 minutes
- Best Practices for Using Encryption in Transit• 30 minutes
- Best Practices for Deploying Secrets Management Services• 30 minutes
- Encryption in Use• 30 minutes
1 assignment• Total 10 minutes
- Securing Sensitive Data in the Cloud• 10 minutes
In this section, we explore strategies for detecting and mitigating common cloud security threats, including data breaches, misconfigurations, and insecure APIs. Key concepts include IAM best practices, secure key management, and the use of frameworks like MITRE ATT&CK to enhance cloud security posture.
What's included
1 video8 readings1 assignment
1 video• Total 1 minute
- Understanding Common Security Threats to Cloud Services - Overview Video• 1 minute
8 readings• Total 120 minutes
- Introduction• 10 minutes
- Best Practices for Detecting and Mitigating Data Breaches in Cloud Environments• 10 minutes
- Misconfigurations in Cloud Services• 10 minutes
- Insufficient IAM, Secrets, and Key Management• 10 minutes
- Account Hijacking in Cloud Services• 20 minutes
- Insider Threats in Cloud Services• 20 minutes
- Insecure APIs in Cloud Services• 20 minutes
- The Abuse of Cloud Services• 20 minutes
1 assignment• Total 10 minutes
- Security Fundamentals in Cloud Computing• 10 minutes
In this section, we explore evaluating cloud service providers through risk assessments, contracts, and audits to ensure security and compliance. Key concepts include using SOC 2 Type 2 reports for control evaluation, designing SLAs for incident response, and conducting annual penetration testing for cloud systems.
What's included
1 video4 readings1 assignment
1 video• Total 1 minute
- Engaging with Cloud Providers - Overview Video• 1 minute
4 readings• Total 80 minutes
- Introduction• 10 minutes
- Data Privacy and Data Sovereignty• 30 minutes
- What Are SOC Reports• 20 minutes
- Conducting Penetration Testing in Cloud Environments• 20 minutes
1 assignment• Total 10 minutes
- Cloud Provider Engagement and Security Fundamentals• 10 minutes
In this section, we explore hybrid cloud strategies, focusing on integrating on-premises and cloud environments using tools like Azure Front Door, site-to-site VPN, and SQL databases. We emphasize identity management with Microsoft Entra Domain Services and discuss secure network architectures, including AWS and Azure connectivity options. The section highlights best practices for centralized identity control, auditing, and securing hybrid environments with AWS IAM, Azure AD, and GCP solutions. It also covers practical applications in storage, computing, and disaster recovery, ensuring consistent operations and security across hybrid infrastructures.
What's included
1 video8 readings1 assignment
1 video• Total 1 minute
- Managing Hybrid Clouds - Overview Video• 1 minute
8 readings• Total 190 minutes
- Introduction• 30 minutes
- Best Practices for Identity in a Hybrid Environment• 20 minutes
- Managing Identity Over Hybrid Azure Environments• 20 minutes
- Network Architecture for Hybrid Cloud Environments• 20 minutes
- Connecting the On-Premises Environment to Azure• 20 minutes
- Storage Services for Hybrid Cloud Environments• 20 minutes
- Connecting to Storage Services Over GCP Hybrid Environments• 30 minutes
- Using Computing Services Over GCP Hybrid Environments• 30 minutes
1 assignment• Total 10 minutes
- Hybrid Cloud Security and Management Fundamentals• 10 minutes
In this section, we explore strategies for managing multi-cloud environments using AWS, Azure, and GCP, focusing on cost, security, and compliance. Key concepts include data replication, identity management, encryption in transit and at rest, and cost implications across cloud service providers (CSPs).
What's included
1 video7 readings1 assignment
1 video• Total 1 minute
- Managing Multi-Cloud Environments - Overview Video• 1 minute
7 readings• Total 170 minutes
- Introduction• 30 minutes
- Identity Management• 30 minutes
- Managing Identity in AWS Over Multi-Cloud Environments• 20 minutes
- Managing Identity in Azure Over Multi-Cloud Environments• 30 minutes
- Network Architecture for Multi-Cloud Environments• 20 minutes
- Data Security in Multi-Cloud Environments• 20 minutes
- CIEM• 20 minutes
1 assignment• Total 10 minutes
- Managing Security and Access in Multi-Cloud Environments• 10 minutes
In this section, we explore the cultural and technical aspects of integrating security into DevOps workflows through DevSecOps. We examine best practices for people, processes, and technology, including secure CI/CD pipeline implementation and cloud-based security tools like Amazon Inspector and GitHub Copilot.
What's included
1 video3 readings1 assignment
1 video• Total 1 minute
- Implementing DevSecOps - Overview Video• 1 minute
3 readings• Total 60 minutes
- Introduction• 30 minutes
- Implementing Security as part of the test phase• 10 minutes
- DevSecOps Best Practices Technology• 20 minutes
1 assignment• Total 10 minutes
- DevSecOps Fundamentals• 10 minutes
In this section, we explore managing security and governance across multi-cloud environments using tools like AWS SCPs, Azure Policy, and Terraform. We focus on automation through infrastructure as code (IaC) and policy as code (PaC) to ensure consistency, compliance, and scalability in large-scale cloud operations.
What's included
1 video5 readings1 assignment
1 video• Total 1 minute
- Security in Large-Scale Environments - Overview Video• 1 minute
5 readings• Total 120 minutes
- Introduction• 20 minutes
- AWS Organizations• 20 minutes
- Governance in Azure• 20 minutes
- Governance in Google Cloud• 30 minutes
- AWS SCPs• 30 minutes
1 assignment• Total 10 minutes
- Cloud Security and Governance Fundamentals• 10 minutes
Instructor

Offered by

Offered by

Packt helps tech professionals put software to work by distilling and sharing the working knowledge of their peers. Packt is an established global technical learning content provider, founded in Birmingham, UK, with over twenty years of experience delivering premium, rich content from groundbreaking authors on a wide range of emerging and popular technologies.
Why people choose Coursera for their career

Felipe M.

Jennifer J.

Larry W.

Chaitanya A.
Explore more from Information Technology
EEdureka
Course
IIllinois Tech
Course
IIllinois Tech
Course
PPalo Alto Networks
Course