Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Course Outline
Introduction to Encryption and Key Management
- Differences between symmetric and asymmetric encryption
- The role of keys in data encryption and authentication
- The importance of key management for security and compliance
Key Lifecycle Management
- Generating and distributing keys
- Rotating and expiring keys
- Archiving keys and performing secure deletion
Access Control and Key Protection
- Implementing role-based access for key operations
- Enforcing separation of duties and maintaining audit trails
- Utilising Hardware Security Modules (HSMs)
Key Management Systems and Architectures
- An overview of commercial and open-source KMS
- Designing architectures for secure key storage and management
- Integrating KMS with existing applications and services
Cloud Key Management Practices
- Managing keys in AWS, Azure, and Google Cloud
- Comparing Bring Your Own Key (BYOK) with cloud-native keys
- Developing multi-cloud key management strategies
Compliance and Auditing
- Key management considerations for PCI DSS, HIPAA, GDPR, and NIST
- Auditing key usage and setting up alerting mechanisms
- Responding to incidents involving compromised keys
Case Studies and Best Practices
- Deploying key management at an enterprise scale
- Identifying common pitfalls and applying mitigation strategies
- Crafting your organisation’s key management policy
Summary and Next Steps
Requirements
- A foundational grasp of encryption and cryptographic principles
- Practical experience with IT infrastructure or security systems
- Knowledge of cloud environments is advantageous
Target Audience
- Security engineers
- IT administrators responsible for managing sensitive data
- Compliance and risk specialists
21 Hours
Testimonials (2)
The trainer was helpful..
Attila - Lifial
Course - Compliance and the Management of Compliance Risk
The report and rules setup.