Unit of competency Outline

Date retreived
23/07/2026 5:03 AM AWST

Whilst all efforts are made to provide accurate and timely information from the relevant source/documentation, please be aware that the information supplied may not be the most current version. The accuracy of the detail has not been confirmed by the Department and therefore should not be relied upon without first confirming the contents.

Manage cloud identity and access

Manage cloud identity and access

Unit of competency
National Code
ICTCLD509
State Code
ODT49
TGA Status
Current
DTWD Status
Approved
Current Release Number
1.00
Current Release Date
03/02/2022
State Implementation and Classification
Approved Date
25/05/2022
Field of Education
029901 - Security Science
Original Release Date
25/05/2022
Nominal Hours
55
Description
This unit describes the skills and knowledge required to securely authenticate and maintain cloud-based identity and access management (IAM) systems in organisations. It includes developing, implementing and evaluating secure cloud computing solutions.The unit applies to individuals who may work in roles such as security engineers, cloud developers and architects, and information security officers. It also includes individuals responsible for managing operational concerns across cloud environments.No licensing, legislative or certification requirements apply to this unit at the time of publication.
Notes
Elements and Performance Criteria
1. Prepare to manage cloud identity and access
  • 1.1 Confirm work brief and tasks according to organisational policies and procedures
  • 1.2 Identify required protocols, platforms and networks in cloud-based infrastructure and confirm interoperability with organisational systems
  • 1.3 Review password and multi-factor authentication requirements
  • 1.4 Discuss limitations of existing cloud-based IAM configuration with required personnel
  • 1.5 Confirm new IAM entities that will be required to complete work brief
  • 1.6 Identify required protocols, platforms and networks in cloud-based infrastructure and confirm interoperability with organisational systems
2. Create and secure new IAM users
  • 2.1 Authenticate cloud-based IAM service used by organisation according to work brief
  • 2.2 Modify password policy and enforce password complexity and expiry according to work brief
  • 2.2 Define updated security policies and roles according to work brief
  • 2.3 Create user accounts and associate with required permissions following organisational naming conventions
  • 2.4 Securely share user access credentials with organisational staff
  • 2.5 Enforce multi-factor authentication according to work brief
  • 2.6 Confirm that required staff can access specified account and reset credentials according to organisational processes and procedures
3. Configure machine resource permissions
  • 3.1 Identify cloud-based machine resources requiring IAM permissions according to work brief
  • 3.2 Define and confirm required security policies meet organisational needs
  • 3.3 Check that machine resources have required permissions
  • 3.4 Apply permissions to identified machine resources according to work brief
  • 3.5 Confirm that machine can be accessed by other resources and services as per work brief
  • 3.6 Document changes according to organisational policies and procedures
4. Periodically review IAM configuration
  • 4.1 Track members, activities and permissions in centralised location
  • 4.2 Review activity and recommend permission changes
  • 4.3 Delete permissions and entities that are no longer required
  • 4.4 Document changes according to organisational policies and procedures
No information
No information
No information
State Code National Code Title Type
AE701 ICTSS00125 Cloud Security Skill Set Skill set
BGJ4 ICT50220 Diploma of Information Technology Qualification