Unit of competency Outline
Date retreived
23/07/2026 5:03 AM AWST
23/07/2026 5:03 AM AWST
Whilst all efforts are made to provide accurate and timely information from the relevant source/documentation, please be aware that the information supplied may not be the most current version. The accuracy of the detail has not been confirmed by the Department and therefore should not be relied upon without first confirming the contents.
Manage cloud identity and access
Manage cloud identity and access
Unit of competency
National Code
ICTCLD509
ICTCLD509
State Code
ODT49
ODT49
TGA Status
Current
Current
DTWD Status
Approved
Approved
State Implementation and Classification
Approved Date
25/05/2022
Field of Education
029901 - Security Science
Original Release Date
25/05/2022
Nominal Hours
55
Description
This unit describes the skills and knowledge required to securely authenticate and maintain cloud-based identity and access management (IAM) systems in organisations. It includes developing, implementing and evaluating secure cloud computing solutions.The unit applies to individuals who may work in roles such as security engineers, cloud developers and architects, and information security officers. It also includes individuals responsible for managing operational concerns across cloud environments.No licensing, legislative or certification requirements apply to this unit at the time of publication.
Notes
Elements and Performance Criteria
1. Prepare to manage cloud identity and access
- 1.1 Confirm work brief and tasks according to organisational policies and procedures
- 1.2 Identify required protocols, platforms and networks in cloud-based infrastructure and confirm interoperability with organisational systems
- 1.3 Review password and multi-factor authentication requirements
- 1.4 Discuss limitations of existing cloud-based IAM configuration with required personnel
- 1.5 Confirm new IAM entities that will be required to complete work brief
- 1.6 Identify required protocols, platforms and networks in cloud-based infrastructure and confirm interoperability with organisational systems
2. Create and secure new IAM users
- 2.1 Authenticate cloud-based IAM service used by organisation according to work brief
- 2.2 Modify password policy and enforce password complexity and expiry according to work brief
- 2.2 Define updated security policies and roles according to work brief
- 2.3 Create user accounts and associate with required permissions following organisational naming conventions
- 2.4 Securely share user access credentials with organisational staff
- 2.5 Enforce multi-factor authentication according to work brief
- 2.6 Confirm that required staff can access specified account and reset credentials according to organisational processes and procedures
3. Configure machine resource permissions
- 3.1 Identify cloud-based machine resources requiring IAM permissions according to work brief
- 3.2 Define and confirm required security policies meet organisational needs
- 3.3 Check that machine resources have required permissions
- 3.4 Apply permissions to identified machine resources according to work brief
- 3.5 Confirm that machine can be accessed by other resources and services as per work brief
- 3.6 Document changes according to organisational policies and procedures
4. Periodically review IAM configuration
- 4.1 Track members, activities and permissions in centralised location
- 4.2 Review activity and recommend permission changes
- 4.3 Delete permissions and entities that are no longer required
- 4.4 Document changes according to organisational policies and procedures
No information
No information
No information
| State Code | National Code | Title | Type |
|---|---|---|---|
| AE701 | ICTSS00125 | Cloud Security Skill Set | Skill set |
| BGJ4 | ICT50220 | Diploma of Information Technology | Qualification |