Udemy
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
Turn what you know into an opportunity and reach millions around the world.
Learn More
Your cart is empty.
Keep shopping
SCS-C02: AWS Certified Security - Specialty
Rating: 4.9 out of 5(9 ratings)
80 students

SCS-C02: AWS Certified Security - Specialty

Certifiacte exam peparation course
Last updated 11/2023
English
English

What you'll learn

  • Prepare for potential security incidents and establish an incident response plan.
  • Design and Implement Logging Solutions
  • Implement security controls to protect infrastructure components.
  • Establish secure identity and access management mechanisms.
  • Design and implement data encryption for data at rest and in transit.
  • Implement security monitoring to detect and respond to events.
  • Implement security operations automation using AWS services.

Course content

7 sections51 lectures18h 18m total length
  • Course Overview6:12

    Discover the AWS certified security – specialty course overview with module-based exam prep, console demos, and practice questions, while clarifying target audiences and prerequisites in cloud security and CompTIA fundamentals.

  • Introduction26:02

    Explore the AWS certified security specialty exam prerequisites, Bloom's taxonomy apply analyze evaluate, and the six pillars of the well-architected framework, with scaffolding and practice questions.

  • Host Security Overview16:13

    Explore host security in AWS by examining how to protect EC2 instances, containers, and serverless resources across data in transit, data at rest, and access controls.

  • Host Security Configurations29:55

    Explore host security configurations for AWS EC2, including hardening instances with IAM roles, patch management, memory and EBS encryption, and secure access via SSM agent, key pairs, and security groups.

  • Host Security Services25:09

    Explore host security services with security groups and Amazon Inspector, including stateful filtering, design and reuse of groups, and vulnerability scanning across EC2, Lambda, and ECR.

  • Troubleshoot Host Security19:51

    Learn to troubleshoot host security for EC2 by using auto-scaling, elastic load balancing, cross-zone failover, automated backups with EBS snapshots and Data Lifecycle Manager, and CloudWatch monitoring.

  • Network Security Overview22:04

    Explore how AWS network security uses VPCs and IAM-based identity controls to protect networks, edge spaces, and APIs, including ALB and NLB load balancers.

  • Network Design for Security24:23

    Design secure AWS networks with private link and VPC endpoints, comparing interface and gateway endpoints, gateway load balancer endpoints, and Route 53 split-horizon DNS to keep traffic private.

  • Securing Segments18:30

    Explore VPC security mechanisms for network segmentation, compare security groups and network ACLs, and learn firewall manager usage for centralized and distributed protection with strict inbound rules.

  • Traffic Monitoring17:14

    Explore how AWS traffic monitoring uses VPC flow logs, traffic mirroring, and reachability and network access analyzers to diagnose issues and route logs to CloudWatch, S3, or Kinesis for analysis.

  • Securing Network Connections17:24

    Explore securing network connections in hybrid deployments, including client and site-to-site VPNs, Direct Connect with encryption options, and VPC peering to keep on-prem and cloud traffic secure and efficient.

  • Troubleshooting Network Security21:49

    Learn to troubleshoot network security with reachability and network access analyzers in AWS, understanding connectivity versus isolation and their limitations. Build security posture with firewall manager and shield features.

  • Edge Security Overview23:24

    Explore edge security in AWS by examining edge locations, edge devices, and CloudFront, and learn how to reduce attack surfaces with Origin Access Control and encrypted data.

  • Edge Security Services25:32

    Explore edge security services in AWS, learning how to build layered defenses with TLS, DDoS protection, WAF, DNS health checks, and data residency for edge and hybrid deployments.

  • Using WAF19:31

    Learn how AWS WAF protects web apps via web ACLs, managed and custom rules, and edge security for CloudFront and related services, plus rule components and WCUs.

  • Troubleshooting Edge Security21:36

    Troubleshoot edge security with DDoS protection, Shield Advanced, CloudFront, ELB, and WAF, then apply private subnets and explicit allow rules to reduce the attack surface.

Requirements

  • Candidates preparing for the AWS Certified Security - Specialty exam are expected to have a strong understanding of AWS services, cloud computing concepts, and general security principles. It's recommended that candidates have experience with AWS services related to security, and some prior experience working with AWS environments.

Description

The AWS Certified Security - Specialty (SCS-C02) certification is a designation offered by Amazon Web Services (AWS) that validates a candidate's expertise in designing and implementing secure applications and infrastructures on the AWS platform. This certification is intended for individuals who work with AWS services and have a strong focus on security aspects.

The main objective of this certification is to validate your skills and knowledge in building and deploying security solutions in the AWS Cloud. Furthermore, this certification also confirms that you understand the specialized data classifications and AWS data protection mechanisms, data-encryption techniques and how to implement them using AWS mechanisms, as well as secure internet protocols and how to implement them using AWS mechanisms. Overall, taking this exam will help you demonstrate your expertise in the field of AWS security, which is essential for any IT professional working on AWS infrastructure.

The AWS Certified Security - Specialty course is designed to equip IT professionals and security specialists with the knowledge and skills needed to design and implement secure applications and infrastructures on the Amazon Web Services (AWS) platform.

This certification is intended for individuals who want to demonstrate their expertise in securing AWS environments and applying best practices for maintaining a secure cloud infrastructure.

Who this course is for:

  • Security Specialists, Security Engineers, Security Architects, Security Consultants
  • Cloud Architects, Cloud Security Managers
  • Network Security Engineers
  • Compliance Officers
  • Penetration Testers and Ethical Hackers
  • Information Security Officers
  • Risk Management Professionals