Module 1: Domain 1: Detection
1
1.1.1 Workload Monitoring and Health Checks 2
1.1.2 Security Detection Services 3
1.2.1 Logging Sources and Collection 4
1.2.2 Log Storage Analysis and Correlation 5
1.3.1 Troubleshooting Telemetry Module 2: Domain 2: Incident Response
1
2.1.1 Response Plans and Runbooks 2
2.1.2 Testing and Automated Remediation 3
2.2.1 Forensic Artifacts and Finding Validation 4
2.2.2 Containment, Eradication, Recovery, and Root Cause Module 3: Domain 3: Infrastructure Security
1
3.1.1 Edge Security Strategies 2
3.1.2 Edge Controls and Rules 3
3.2.1 Hardened Images, Roles, Scan, and Patch 4
3.2.2 Administrative Access and Pipeline Security 5
3.2.3 Generative AI Guardrails 6
3.3.1 Network, Hybrid, and Segmentation Module 4: Domain 4: Identity and Access Management
1
4.1.1 Authentication Strategies 2
4.1.2 Temporary Credentials 3
4.2.1 Authorization Controls 4
4.2.2 Least Privilege, ABAC, and RBAC 5
4.2.3 Authorization Failures Module 5: Domain 5: Data Protection
2
5.1.2 Private Resource Access 3
5.1.3 Inter-Resource Encryption 5
5.2.2 Integrity Lifecycle and Backup 6
5.3.1 Secrets Keys and Certificates Module 6: Domain 6: Security Foundations and Governance
1
6.1.1 Organizations and Control Tower 2
6.1.2 Organization Policies and Root Access 3
6.2.1 IaC and Firewall Manager 4
6.2.2 RAM and Service Catalog 5
6.3.1 Compliance Evidence