Get in Touch

Course Outline

Foundations of Encryption and Key Management

  • Differences between symmetric and asymmetric encryption
  • Utilising keys for data encryption and authentication
  • The importance of key management for security and compliance

Managing the Key Lifecycle

  • Generating and distributing keys
  • Rotating keys and handling expiration
  • Archiving keys and performing secure deletion

Access Control and Key Safeguarding

  • Implementing role-based access for key operations
  • Enforcing separation of duties and maintaining audit trails
  • Utilising Hardware Security Modules (HSMs)

Key Management Systems and Architectures

  • Overview of commercial and open-source KMS solutions
  • Designing architectures for secure key storage and management
  • Integrating KMS with applications and services

Cloud-Based Key Management Practices

  • Key management strategies in AWS, Azure, and Google Cloud
  • Comparing Bring Your Own Key (BYOK) with cloud-native keys
  • Strategies for multi-cloud key management

Compliance and Auditing

  • Applying key management standards in PCI DSS, HIPAA, GDPR, and NIST
  • Auditing key usage and setting up alerting mechanisms
  • Responding to incidents involving compromised keys

Case Studies and Best Practices

  • Deploying key management at enterprise scale
  • Identifying common pitfalls and applying mitigation strategies
  • Formulating your organisation's key management policy

Conclusion and Next Steps

Requirements

  • Familiarity with fundamental encryption and cryptographic principles
  • Background in managing IT infrastructure or security systems
  • Experience with cloud platforms is advantageous

Target Audience

  • Security engineers
  • IT administrators responsible for handling sensitive data
  • Compliance and risk specialists
 21 Hours

Number of participants


Price per participant

Testimonials (2)

Provisional Upcoming Courses (Require 5+ participants)

Related Categories