
Learn to use AWS cloud security tools and services, including Certificate Manager, Secrets Manager, Directory Service, GuardDuty, Amazon Inspector, Single Sign-On, CloudHSM, and Shield, to deploy a secure cloud infrastructure.
Explore the breadth of Amazon Web Services, from compute and storage to analytics and AI, through practical demonstrations that deploy web and ERP applications and build a sample project.
Create your AWS account by providing a real email, personal and contact details, and payment information, verify with an OTP, and sign in to access the AWS dashboard.
Install and configure the AWS CLI using an IAM user's programmatic credentials, including creating an IAM user and access keys, and setting up credentials and a default region.
Explore the AWS CLI command reference to manage AWS services, including IAM, CloudWatch, CloudTrail, and Lambda, learn to read documentation, and configure Lambda functions from the command line.
Create an IAM role on AWS to authorize services across accounts, attach permission policies, and grant read, write, or execute access to resources like S3.
Explore artifact and related identity and security tools on Amazon cloud, and learn to generate on-demand security and compliance reports, certifications, and attestations for cloud deployments.
Create an Amazon cloud instance using the security identity and compliance tool, explore access control documents and artifacts, and practice integrating security principles across multiple cloud services and languages.
Provision, manage, and deploy public and private SSL certificates on AWS Certificate Manager to secure TLS, DNS, and internal resources. Automate workflows with load balancers, CloudFront, and Lambda.
Explore practical use of AWS Certificate Manager to issue public and private certificates, validate domains via DNS or email, configure permissions, and secure websites and services with SSL.
Discover cloud hsm, a fully managed hardware security module on amazon cloud that protects encryption keys, enables identity and authentication, and secures workloads with standards and ssl integration.
Learn practical configuration of Amazon Cloud HSM, use the dashboard, and set up region-based backup options.
Explore how the directory service on the Amazon cloud enables Microsoft Active Directory in the cloud, delivering single sign-on, policy management, and secure access across apps.
Explore practical directory service tasks on Amazon Cloud by creating an instance, navigating the security dashboard, and managing passwords, pools, and triggers with Cognito integration.
Explore GuardDuty's security monitoring across accounts and regions, detecting unusual activity and potential compromise with machine learning, alerts, and Lambda-driven automation.
Explore GuardDuty on Amazon cloud, learning how it analyzes security findings, blocks IPs, and manages threat loads.
Learn to use Amazon Inspector for security assessments of cloud resources, configure rules with Trusted Advisor, and analyze static and dynamic findings by severity to improve security and compliance.
Learn to analyze your assets with Amazon inspector, identify potential security issues, and define sources and rules from templates. Apply hardening benchmarks and best practices to implement secure configurations.
When you are building your career around Cloud Computing, specially AWS, you are not just expected to develop and host an application full of features with great User Interface. But you have to keep all your resources compliant and Secure. Most of the people who take Cloud certifications, usually forget to learn AWS Security tools and services, or if they learn, they can spend adequate time for learning various security features. This is helps you learn and master various Security tools and services available on AWS Cloud. In this course you will learn about the following services:
What is AWS Artifact?
No cost, self-service portal for on-demand access to AWS compliance reports for cloud resources.
What is AWS CloudHSM?
It is a cloud-based hardware security module (HSM) that enables you to easily generate and use your own encryption keys on the AWS Cloud. With CloudHSM, you can manage your own encryption keys. CloudHSM offers you the flexibility to integrate with your applications using industry-standard APIs, such as Java Cryptography Extensions (JCE), Microsoft CryptoNG (CNG) libraries and more.
What is AWS Certificate Manager?
It is a service that lets you easily provision, manage, and deploy public and private SSL/TLS (Secure Sockets Layer/Transport Layer Security) certificates for use with AWS services and your internal connected resources.
What is AWS Secrets Manager?
It helps you protect secrets needed to access your applications, services, and IT resources. The service enables you to easily rotate, manage, and retrieve database credentials, API keys, and other secrets throughout their lifecycle. Users and applications retrieve secrets with a call to Secrets Manager APIs, eliminating the need to hardcode sensitive information in plain text.
What is AWS Directory Service?
It provides multiple ways to use Microsoft Active Directory (AD) with other AWS services. Directories store information about users, groups, and devices, and administrators use them to manage access to information and resources.
What is AWS Guard Duty?
It is a threat detection service that continuously monitors for malicious activity and unauthorized behavior to protect your AWS accounts, workloads, and data stored in Amazon S3.
What is AWS Inspector?
It is an automated security assessment service that helps improve the security and compliance of applications deployed on AWS.
Amazon Inspector automatically assesses applications for exposure, vulnerabilities, and deviations from best practices.
What is AWS Single Sign-On?
It is a cloud service that allows you to grant your users access to AWS resources, such as Amazon EC2 instances, across multiple AWS accounts.
What is AWS WAF and Shield?
It is a web application firewall that lets you monitor the HTTP and HTTPS requests that are forwarded to an Amazon CloudFront distribution, an Amazon API Gateway REST API, or an Application Load Balancer. AWS WAF also lets you control access to your content.