Certificate of Cloud Auditing Knowledge (CCAK)

Programme Code D274
Learning Partner(s)
Cloud Security Alliance
2 Days
Format Online
Cyber Risk Assessment & Management Cloud Security
Job Roles
ICT&SS Professional Red Team Engineer Cybersecurity Policy Developer Cybersecurity Engineer Chief Information Security Officer


Elevate your expertise with the Certificate of Cloud Auditing Knowledge (CCAK)  and be at the forefront of cloud auditing proficiency. CCAK is the first credential available for industry professionals, like you, to demonstrate your expertise in the essential principles of auditing cloud computing systems. The CCAK credential and training fills the gap in the market for technical education for cloud IT auditing.

This credential leverages CSA’s cloud expertise and ISACA’s traditional audit expertise, combining their know-how and expertise to develop and deliver the best possible solution for cloud auditing education.

The CCAK certification prepares audit and IT professionals to:
  • Take a well-planned, risk-based approach to cloud evaluation and audit management
  • Understand cloud computing security, governance, and compliance
  • Tackle unique cloud challenges, technology stacks, DevOps, CI/CD, continuous compliance and more
  • Address the challenges of transparency, complexity, interdependencies, scalability and more

Key Takeaways

At the end of this programme, you will be able to:
  • Understand the difference in assessing and auditing cloud environments versus traditional IT infrastructure & services
  • Discover how to use cloud security assessment methods and techniques to evaluate a cloud service before and during the provision of the service
  • Learn how existing governance policies and frameworks are affected by the introduction of cloud into the ecosystem
  • Understand the unique requirements of compliance in the cloud due to shared responsibility between cloud providers and customers
  • Learn how to use a cloud-specific security controls framework to ensure security within your organisation
  • Architect in a way that allows you to measure control effectiveness through metrics and ultimately leads to continuous monitoring

Who Should Attend

Please refer to the job roles section.


There are no prerequisites to take the CCAK exam. However, since the CCAK assumes you have a working knowledge of cloud security best practices, we advise that you earn the Certificate of Cloud Security Knowledge (CCSK) before pursuing the CCAK. That said, the CCSK is not a prerequisite to the CCAK, and individuals can earn their CCAK without earning the CCSK first.

What To Bring

Laptop with a stable internet connection and Zoom App to attend the training.

Programme Structure

This programme will cover the following topics:
  • Key concepts and tools of cloud governance and risk management
  • Designing and building a cloud compliance program
  • A Threat Analysis Methodology for Cloud using CCM
  • Impact of cloud automation, native development and integration models on auditing and compliance
  • Evaluating a Cloud Compliance Program
  • Building and executing a cloud audit plan and applying auditing as an assurance tool
  • CCM: Auditing controls
  • Compliance requirements, control objectives and frameworks, certification, attestation, and authorisations

Full Fee

Full programme fee


Payment for this programme is to Cloud Security Alliance and will be invoiced in SGD, subjected to exchange rate and GST applies.

Upcoming Classes

Class 1
03 Jun 2024 to 04 Jun 2024 (Full Time)
Duration: 2 days
When: Jun - 03, 04
Time : 9:00 AM to 5:00 PM
Class 2
09 Sep 2024 to 10 Sep 2024 (Full Time)
Duration: 2 days
When: Sep - 09, 10
Time : 9:00 AM to 5:00 PM
Class 3
02 Dec 2024 to 03 Dec 2024 (Full Time)
Duration: 2 days
When: Dec - 02
Time : 9:00 AM to 5:00 PM
Class 4
10 Mar 2025 to 11 Mar 2025 (Full Time)
Duration: 2 days
When: Mar - 10, 11
Time : 9:00 AM to 5:00 PM


Step 1 Apply through your organisation's training request system.

Step 2 Your organisation's training request system (or relevant HR staff) confirms your organisation's approval for you to take the programme.

Your organisation will send registration information to the academy.

Organisation HR L&D or equivalent staff can click here for details of the registration submission process.

Step 3 GovTech Digital Academy will inform you whether you have been successful in enrolment.