Learning path · Foundational
Cloud Fundamentals
Learn cloud as an architecture and governance discipline, not a product catalogue.
What you will be able to do
- Explain IaaS, PaaS and SaaS responsibility boundaries
- Describe a landing zone and why it comes first
- Identify the misconfigurations behind most cloud incidents
The path
Work through these in order.
- 01Cloud Computing
Characteristics, service models and regions.
On demand delivery of compute, storage, networking and platform services over a network, billed by consumption and managed through APIs.
- 02Shared Responsibility Model
Where your obligations begin.
The division of security duties between cloud provider and customer, which shifts with each service model.
- 03Cloud Networking
Virtual networks, endpoints and hybrid links.
Software defined networks inside cloud platforms: virtual networks, subnets, route tables, peering, private endpoints and hybrid connectivity.
- 04Microsoft Azure
Hierarchy, policy and landing zones.
Microsoft's public cloud platform, tightly integrated with Entra ID and Microsoft 365, organised through management groups, subscriptions and resource groups.
- 05Amazon Web Services
Accounts, IAM policy evaluation and guardrails.
The largest public cloud platform, organised around accounts within AWS Organizations, with IAM as the central authorisation system.
- 06Cloud Security
Control plane, posture and monitoring.
Securing cloud platforms through identity, configuration posture, network controls, workload protection and control plane monitoring.
- 07FinOps
Visibility, attribution and optimisation.
The practice of making cloud spend visible, attributable and optimisable as an engineering responsibility.
