Get in Touch
 Duration 21 hours

Course Outline

Foundations of Encryption and Key Management

  • Differences between symmetric and asymmetric encryption
  • The role of keys in data encryption and authentication
  • The importance of key management for security and compliance

Managing the Key Lifecycle

  • Processes for key generation and distribution
  • Strategies for key rotation and expiration
  • Secure archival and deletion of keys

Access Control and Key Safeguards

  • Implementing role-based access for key operations
  • Enforcing separation of duties and maintaining audit trails
  • Utilizing Hardware Security Modules (HSMs)

KMS Architecture and Systems

  • Survey of commercial and open-source KMS solutions
  • Designing architectures for secure key storage and management
  • Integrating KMS with applications and services

Key Management in the Cloud

  • Managing keys in AWS, Azure, and Google Cloud
  • Comparing Bring Your Own Key (BYOK) with cloud-native keys
  • Developing strategies for multi-cloud key management

Compliance and Audit Procedures

  • Key management requirements under PCI DSS, HIPAA, GDPR, and NIST
  • Auditing key usage and establishing alerting mechanisms
  • Incident response strategies for compromised keys

Case Studies and Industry Best Practices

  • Deploying key management at an enterprise scale
  • Identifying common pitfalls and implementing mitigation strategies
  • Formulating an organizational key management policy

Conclusion and Next Steps

Requirements

  • Fundamental knowledge of encryption and cryptographic principles
  • Practical experience with IT infrastructure or security systems
  • Familiarity with cloud environments is an asset

Target Audience

  • Security engineers
  • IT administrators responsible for sensitive data
  • Compliance and risk management professionals

Number of participants


Price per participant

Testimonials (2)

Upcoming Courses

Related Categories