GCPSPARKSNETSEC

Network Security Essentials Training

This course provides a practical guide to securing networks on Google Cloud. The course will cover core network security principles and their application using Google Cloud's managed services. Network security concepts and best practices will be explored through practical demonstrations and real-world application scenarios. The course uses presentations, demos, and discussions, with real-world examples, to ensure effective learning.

Google Cloud
✓ Official training Google CloudLevel Intermediate⏱️ 0.5 day (3h)

What you will learn

  • Describe the shared responsibility model and its practical implications for security on Google Cloud.
  • Design and implement secure network architectures with native services like Cloud NGFW and Cloud Armor.
  • Proactively detect and mitigate network threats using VPC Flow Logs and Cloud IDS.
  • Secure hybrid connectivity with advanced services like VPC Service Controls.
  • Leverage generative AI to enhance security operations and automation.

Prerequisites

  • Familiarity with foundational networking and Google Cloud concepts.
  • Experience with the Google Cloud console and CLI is also beneficial.

Target audience

  • Cloud Network Engineer, Cloud Security Engineer, Anyone involved in designing, implementing, or managing network security on Google Cloud.

Training Program

5 modules to master the fundamentals

Objectives
  • Explain the shared responsibility model in depth, focusing on common customer configuration pitfalls.
  • Design and implement secure network architectures using Cloud NGFW and microsegmentation.
Topics covered
  • →Shared Responsibility and Due Diligence
  • →Secure Architectures with Cloud NGFW
Activities

1 discussion

1 demo

Objectives
  • Apply advanced Cloud Armor features to protect against sophisticated web attacks and bot traffic.
  • Configure Cloud NAT and Private Service Connect to meet strict security and compliance requirements.
  • Implement Cloud IDS to proactively detect and analyze malicious network activity and compliance.
Topics covered
  • →Cloud Armor Configurations
  • →Secure Private Connectivity
  • →Proactive Intrusion Detection
Activities

1 demo

Objectives
  • Analyze network traffic patterns for potential threats using advanced queries of VPC Flow Logs and the Flow Analyzer.
  • Implement secure hybrid connectivity between on-premises and Google Cloud environments for large-scale deployments.
Topics covered
  • →Network Monitoring and Threat Analysis
  • →Implementing Secure Hybrid Connectivity
Activities

1 demo

Objectives
  • Leverage AI-assisted threat intelligence to accelerate the investigation and remediation of network security events.
  • Discuss the ethical considerations and best practices for using AI in network security, and demonstrate its use in practical, network-specific scenarios.
Topics covered
  • →The Role of Generative AI in Network Security
  • →AI-Powered Workflows and Best Practices
Activities

1 discussion

2 demos

Objectives
  • Evaluate understanding of core course concepts through scenario-based questions.
Topics covered
  • →Review of Core Concepts
Activities

5 scenario-based multiple choice questions

Related Trainings

Google Cloud

Security Command Center Enterprise - Essentials

This course provides a comprehensive overview of Google Cloud Security Command Center (SCC) Enterprise, a Cloud-Native Application Protection Platform (CNAPP) solution that helps organizations prevent, detect, and respond to threats across Google Cloud services. You will learn about core SCC Enterprise features, including enhanced threat detection, in-depth vulnerability management, and integrated case management. Fundamental concepts in threat management and vulnerability assessment will also be covered, along with practical demonstrations of how to use SCC Enterprise to identify, investigate, and remediate security risks within your cloud environment.

0.5 d
Intermediate
Google Cloud

Model Armor: Securing AI Deployments

This course explains how to use Model Armor to protect AI applications, specifically large language models (LLMs). The curriculum covers Model Armor's architecture and its role in mitigating threats like malicious URLs, prompt injection, jailbreaking, sensitive data leaks, and improper output handling. Practical skills include defining floor settings, configuring templates, and enabling various detection types. You'll also explore sample audit logs to find details about flagged violations.

0.5 d
Fundamental

Upcoming sessions

No date suits you?

We regularly organize new sessions. Contact us to find out about upcoming dates or to schedule a session at a date of your choice.

Register for a custom date

Quality Process

SFEIR Institute's commitment: an excellence approach to ensure the quality and success of all our training programs. Learn more about our quality approach

Teaching Methods Used
  • Lectures / Theoretical Slides — Presentation of concepts using visual aids (PowerPoint, PDF).
  • Technical Demonstration (Demos) — The instructor performs a task or procedure while students observe.
  • Group Discussion — Open exchange among peers and the instructor on a specific topic.
  • Quiz / MCQ — Quick knowledge check (paper-based or digital via tools like Kahoot/Klaxoon).
Evaluation and Monitoring System

The achievement of training objectives is evaluated at multiple levels to ensure quality:

  • Continuous Knowledge Assessment : Verification of knowledge throughout the training via participatory methods (quizzes, practical exercises, case studies) under instructor supervision.
  • Progress Measurement : Comparative self-assessment system including an initial diagnostic to determine the starting level, followed by a final evaluation to validate skills development.
  • Quality Evaluation : End-of-session satisfaction questionnaire to measure the relevance and effectiveness of the training as perceived by participants.

Frequently Asked Questions

This course is for cloud engineers, network administrators, and security professionals who design, deploy, or protect network architectures on Google Cloud.
A working knowledge of core networking concepts and basic Google Cloud services is recommended, as this is an intermediate, level-200 course.
You will learn the shared responsibility model, how to design secure architectures with native services, detect and mitigate threats, secure hybrid connectivity, and apply generative AI to security operations.
It covers native services including Cloud NGFW and Cloud Armor for secure architectures, VPC Flow Logs and Cloud IDS for threat detection, and VPC Service Controls for hybrid connectivity.
The course lasts 3 hours and is instructor-led, combining presentations, demos, and discussions with real-world examples.
Yes. This is an official Google Cloud Sparks course delivered by SFEIR Institute, a certified Google Cloud Training Partner.

395€ excl. VAT

per learner