This guide covers all six domains of the CCSP exam, providing a structured learning path from cloud architecture and governance through data security, platform security, operations, application security, and legal/compliance topics.
This guide works best as a loop: read a chapter, test yourself with practice questions, look up unfamiliar terms in the glossary, then move to the next chapter.
16 chapters covering every exam objective. Each chapter includes key concepts, exam tips, common traps, comparison tables, and a 5-question quiz at the end.
Start Chapter 1Free timed and untimed practice with instant feedback and full explanations. Pick 10–120 questions per session. Filter by domain to drill your weak areas.
Go to practice testEvery CCSPterm defined and searchable. Use it when a chapter mentions a concept you haven't seen before or want a quick refresher on.
Browse glossaryExam blueprint, domain weights, passing score, duration, cost, and registration links. Start here if you're new to this certification.
View exam guideCloud Computing Concepts and Architecture
Objective 1.1 · Describe cloud computing concepts and reference architecture
Cloud Requirements Scoping and Design Principles
Objective 1.2 · Describe cloud requirements scoping, design, and architecture principles
Data Classification and Governance in the Cloud
Objective 2.1 · Describe data classification, data governance, and data lifecycle management in the cloud
Cloud Data Security Controls and Encryption
Objective 2.2 · Design and implement data security controls (encryption, key management, tokenization, masking) in cloud environments
Data Retention, Deletion, and Archiving
Objective 2.3 · Manage data retention, deletion, and archiving in the cloud
Data Events, Monitoring, and Logging
Objective 2.4 · Plan for data events, monitoring, and audit in the cloud
Cloud Platform and Infrastructure Security
Objective 3.1 · Design and implement physical and network security for cloud infrastructure
Virtualization and Container Security
Objective 3.2 · Explain virtualization, container, and serverless security risks and controls
Cloud Management Plane and Identity Management
Objective 3.3 · Design and implement identity and access management (IAM) for cloud environments
Cloud Application Security and DevSecOps
Objective 4.1 · Design and implement secure software development life cycle (SDLC) and DevSecOps practices
Cloud Application Testing and Verification
Objective 4.2 · Plan for cloud application security testing, verification, and quality assurance
Cloud Application Identity and API Security
Objective 4.3 · Apply secure software components, APIs, and identity management to cloud applications
Cloud Security Operations and Incident Response
Objective 5.1 · Plan and implement cloud security operations including incident response, forensics, and business continuity
Cloud Disaster Recovery and Business Continuity Management
Objective 5.2 · Implement and test disaster recovery and business continuity in cloud environments
Cloud Governance, Risk, and Compliance
Objective 6.1 · Describe legal, regulatory, and compliance requirements for cloud environments
Cloud Audit, Contracts, and Third-Party Management
Objective 6.2 · Plan for cloud audit, vendor management, and contractual security requirements
Free CCSP practice questions with full explanations. Test what you learn chapter by chapter.
CCSP Practice Questions