New to cyber security
It is very hard to find out as a beginner that where to start in cyber security field. Over the web , there are plenty of sources , various certificate guide and different career path. I am from a developer/solution background so I wanted to share how I started my journey so that it is useful for others who are looking in this area. I also would like to put those resources which makes sense and does not become obsolete with time.Also, we have many paid and free resources are available online, I prefer to go with free resources first to gain knowledge and feel comfortable.
When we talk about cloud security , we always think how to secure your resources in cloud. what all services in cloud domain which helps us to make us secure either it is identity management , data encryption , network security, compliance and governance and eventually we want prevent, detect and response for any type of threat.
Understanding the concept
I would say first start from any course with basic knowledge of cyber security framework from LikedIn Learning(Take 30 day free trial) which also help you to earn a cert at the end of course which gives you fulfilment of completion as a beginner. There are plenty of youtube video as well but I believe LinkedIn has a quality material to start with.
Implementing the NIST Risk Management Framework
Safeguarding Customer Credit Card Data: PCI Compliance
Using SABSA to Architect Cloud Security
Alison.com (Free course and of good quality)
Practical knowledge:
For Cloud security you can start with any vendor of your choice, and which ever path way you want to go. For example for AWS security path , people recommend AWS Solution Architect Associate → AWS security speciality and similar path for GCP and Microsoft Azure. However below resources are helpful to gain knowledge once you are done with it.
Free labs provided by pwnedlabs
Free internship provided by The Forage
As a cloud security expert you must understand how Application vulnerabilities can create in threat for cloud resources or to stop threat in first place before it is coming to cloud.
Ports whigger helps us to understand specially OWASP top 10 (Their academy has plenty of free resouces)
PodCast and Online Resources
Look for free virtual/in person security conferences. This is from CSA
Follow Unix Guy to see different path in cyber security and guiance.
Look for Cloud Security podcast and subscribe to it
Follow people like Scott piper and Chris Farris
This is what I found useful to start with and above resource helps you to find your best fit in this vast cyber security field specailly PodCast and online resources section.