Course Overview
Security Engineering on AWS is an intermediate-level classroom training course focused on securing workloads, identities, data, accounts, and infrastructure on AWS. The course covers the AWS Shared Responsibility Model, IAM, authentication and authorization, account management, secrets management, data protection, and infrastructure edge protection.
Participants also learn how to generate, collect, and analyze security logs, monitor AWS environments for security events, detect threats, and respond to security incidents. The course includes presentations, demonstrations, hands-on labs, and group exercises using AWS security services and capabilities.
Course Objective
- Understand AWS cloud security based on the CIA triad and the AWS Shared Responsibility Model.
- Create and analyze authentication and authorization using AWS IAM.
- Manage and provision AWS accounts using appropriate AWS services.
- Manage secrets using AWS KMS, AWS Certificate Manager, and AWS Secrets Manager.
- Monitor sensitive information and protect data through encryption and access controls.
- Identify AWS services used to protect workloads from external threats.
- Monitor, generate, and collect security logs using AWS services.
- Identify indicators of security incidents and understand incident response workflows.
- Investigate threats, analyze security findings, and mitigate security incidents using AWS services.
Pre-requisites
- Completion of AWS Security Essentials (Classroom training) or AWS Security Fundamentals (Second Edition) (digital), and Architecting on AWS (Classroom Training).
- Working knowledge of IT security practices and infrastructure concepts.
- Familiarity with the AWS Cloud.
Course Curriculum