CYATTK-CLOUD.AE1
Cloud Threat Hunting: AWS & Azure Security Training
Learn to use advanced threat-hunting techniques for cloud environments such as AWS, Azure, and other cloud platforms.
- Practice in 15 Hands-On Labs — nothing to install
- 17 Interactive Lessons and 85 topics mapped to the official exam objectives
- 204 Practice Test Questions
Intermediate Self-paced · 1 year access 4.4/5 (179 Reviews)
15 Hands-On LiveLabs
Practice real IT tasks in guided environments.
- Real environments
- Auto-graded
- No installation
01 / Skills you'll get
What you will be able to do
- Identify and mitigate advanced threats targeting cloud-based infrastructures
- Employ the latest security tools to detect and respond to cyberattacks
- Master threat hunting and incident response
- Understand the MITRE ATT&CK framework and its application to cloud security
- Analyze threat intelligence to identify emerging threats
- Utilize cloud security tools and technologies effectively
- Implement cloud security configuration and management best practices
- Develop a threat hunting program tailored to your organization’s needs
- Coordinate with your security teams to improve the cybersecurity posture
Target Career Roles
- Business users Security Administrator Cloud administrator
02 / Lessons & labs
See exactly what you will learn and practice
Lessons
17 Interactive Lessons · 85 topics01 Introduction 2 topics +
- What Does This Course Cover?
- Additional Resources
02 Introduction to Threat Hunting 8 topics · 1 LiveLab +
- The Rise of Cybercrime
- What Is Threat Hunting?
- The Key Cyberthreats and Threat Actors
- The Necessity of Threat Hunting
- Threat Modeling
- Threat-Hunting Maturity Model
- Human Elements of Threat Hunting
- Summary
1 LiveLab in this lesson — see the labs panel →
03 Modern Approach to Multi-Cloud Threat Hunting 9 topics +
- Multi-Cloud Threat Hunting
- Building Blocks for the Security Operations Center
- Cyberthreat Detection, Threat Modeling, and the Need for Proactive Threat Hunting Within SOC
- Cyber Resiliency and Organizational Culture
- Skillsets Required for Threat Hunting
- Threat-Hunting Process and Procedures
- Metrics for Assessing the Effectiveness of Threat Hunting
- Threat-Hunting Program Effectiveness
- Summary
04 Exploration of MITRE Key Attack Vectors 5 topics · 3 LiveLab +
- Understanding MITRE ATT&CK
- Threat Hunting Using Five Common Tactics
- Other Methodologies and Key Threat-Hunting Tools to Combat Attack Vectors
- Analysis Tools
- Summary
3 LiveLab in this lesson — see the labs panel →
05 Microsoft Azure Cloud Threat Prevention Framework 13 topics · 3 LiveLab +
- Introduction to Microsoft Security
- Understanding the Shared Responsibility Model
- Microsoft Services for Cloud Security Posture Management and Logging/Monitoring
- Using Microsoft Secure and Protect Features
- Microsoft Detect Services
- Detecting “Privilege Escalation” TTPs
- Detecting Credential Access
- Detecting Lateral Movement
- Detecting Command and Control
- Detecting Data Exfiltration
- Microsoft Investigate, Response, and Recover Features
- Using Machine Learning and Artificial Intelligence in Threat Response
- Summary
3 LiveLab in this lesson — see the labs panel →
06 Microsoft Cybersecurity Reference Architecture and Capability Map 7 topics +
- Introduction
- Microsoft Security Architecture versus the NIST Cybersecurity Framework (CSF)
- Microsoft Security Architecture
- Using the Microsoft Reference Architecture
- Understanding the Security Operations Solutions
- Understanding the People Security Solutions
- Summary
07 AWS Cloud Threat Prevention Framework 12 topics · 6 LiveLab +
- Introduction to AWS Well-Architected Framework
- AWS Services for Monitoring, Logging, and Alerting
- AWS Protect Features
- AWS Detection Features
- How Do You Detect Privilege Escalation?
- How Do You Detect Credential Access?
- How Do You Detect Lateral Movement?
- How Do You Detect Command and Control?
- How Do You Detect Data Exfiltration?
- How Do You Handle Response and Recover?
- Summary
- References
6 LiveLab in this lesson — see the labs panel →
08 AWS Reference Architecture 3 topics · 1 LiveLab +
- AWS Security Framework Overview
- AWS Reference Architecture
- Summary
1 LiveLab in this lesson — see the labs panel →
09 Threat Hunting in Other Cloud Providers 6 topics · 1 LiveLab +
- The Google Cloud Platform
- The IBM Cloud
- Oracle Cloud Infrastructure Security
- The Alibaba Cloud
- Summary
- References
1 LiveLab in this lesson — see the labs panel →
10 The Future of Threat Hunting 10 topics +
- Artificial Intelligence and Machine Learning
- Advances in Quantum Computing
- Advances in IoT and Their Impact
- Operational Technology (OT)
- Blockchain
- Threat Hunting as a Service
- The Evolution of the Threat-Hunting Tool
- Potential Regulatory Guidance
- Summary
- References
11 APPENDIX A: MITRE ATT&CK Tactics +
12 APPENDIX B: Privilege Escalation +
13 APPENDIX C: Credential Access +
14 APPENDIX D: Lateral Movement +
15 APPENDIX E: Command and Control +
16 APPENDIX F: Data Exfiltration +
17 APPENDIX G: MITRE Cloud Matrix 10 topics +
- Initial Access
- Persistence
- Privilege Escalation
- Defense Evasion
- Credential Access
- Discovery
- Lateral Movement
- Collection
- Data Exfiltration
- Impact
Hands-On Labs Our edge
15 LiveLabs- Performing a Phishing Attack
- Performing Local Privilege Escalation
- Enabling and Disabling GuardDuty
- Creating a CloudWatch Dashboard
- Creating a Service Bus
- Deploying an Azure Firewall
- Creating an Azure Front Door
- Creating VPC Flow Logs
- Creating CloudTrail
- Examining Macie
- Creating a Rule in Amazon EventBridge
- Creating a Lambda Function
- Creating an Amazon SNS Topic
- Creating a VPC
- Creating a VPC Network
03 / FAQs
Questions before you start
What is threat hunting?+
What is the purpose of the Threat Hunting in the Cloud course?+
Why is threat hunting important for cloud infrastructure?+
What are the key differences between threat hunting and incident response?+
What are some common threat hunting techniques for cloud environments?+
What are some essential tools for cloud threat hunting?+
How does cloud threat hunting differ from traditional threat hunting?+
What job roles can benefit from this course?+
The job roles that will benefit from this course are:
- Cloud Security Engineers
- Security Analysts
- Incident Responders
- Security Architects
- DevOps Engineers
- IT Managers
Refine Your Cybersecurity Skills
Strengthen your cloud infrastructure defenses through our cyber threat hunting training course.
- 1 year of full access
- 15 LiveLab included
- Certificate of completion
No credit card required