AWS Security Best Practices

AWS Security Best Practices covers secure AWS network design, EC2 hardening, encryption, patch management, logging, monitoring, and alerting through practical classroom instruction and hands-on security labs.

Course Overview

AWS Security Best Practices provides an intermediate-level overview of security practices for protecting AWS workloads. The course covers the AWS Shared Responsibility Model, security frameworks and compliance, secure network infrastructure, Amazon VPC security, compute security, and AWS monitoring and alerting.

Participants learn practical approaches to network segmentation, EC2 hardening, EBS encryption, secure management and patching, vulnerability detection, logging, and monitoring. The course includes presentations, demonstrations, and hands-on labs covering network controls, EC2 security, and security monitoring.

The uploaded course is based on AWS classroom training content from 2022. Current AWS classroom training offerings have evolved, and the current AWS security catalog lists courses such as AWS Security Essentials and Security Engineering on AWS rather than this course title.

Course Objective

  • Understand the AWS Shared Responsibility Model and key AWS security considerations
  • Identify relevant security frameworks, standards, and compliance considerations
  • Design and implement a secure network infrastructure using Amazon VPC
  • Implement network segmentation using public and private subnets, security groups, and NACLs
  • Monitor network traffic using VPC Flow Logs
  • Apply security hardening practices to Amazon EC2 instances
  • Configure EBS encryption and understand its operational impact
  • Use AWS Systems Manager to patch and maintain EC2 instances
  • Implement logging, monitoring, and alerting using Amazon CloudWatch
  • Monitor AWS environments for suspicious activity and security events

Pre-requisites

Participants should have completed AWS Security Fundamentals and AWS Security Essentials.

Course Curriculum