Topic 5 – Cloud in DevSecOps

Chapter Learning Objectives
Chapter 1: Introduction to Cloud - Define cloud computing and its benefits for scalability and speed.
- Distinguish between IaaS, PaaS, and SaaS service models.
- Compare public, private, hybrid, and multi-cloud deployments.
- Understand the shared responsibility model and key cloud security concepts.
Chapter 2: The Role of Cloud in DevSecOps - Explain how cloud-native practices transform DevSecOps workflows.
- Describe core concepts like Infrastructure as Code and immutable infrastructure.
- Identify best practices such as Zero Trust, security as code, and continuous compliance.
- Apply DevSecOps principles to cloud-native architectures including microservices and serverless.
Chapter 3: Cloud Tools and Platforms - Identify essential DevSecOps tools for CI/CD, scanning, monitoring, and compliance.
- Match cloud-native tools to stages of the DevSecOps lifecycle.
- Understand how secrets management and container security tools reduce risk.
- Recognize how automation supports scalable, secure cloud operations.