Security Engineering on AWS

Cybersecurity threats are escalating, and organizations need professionals who can efficiently use AWS security services to stay secure in the AWS Cloud. Security Engineering on AWS focuses on the security practices that AWS recommends for enhancing the security of your data and systems in the cloud. This course highlights the security features of AWS key services including compute, storage, networking, and database services. You'll also learn how to leverage AWS services and tools for automation, continuous monitoring and logging, and responding to security incidents. Through hands-on labs and real-world scenarios, you'll gain practical experience in implementing security solutions, understanding specialized data classifications and AWS data protection mechanisms, and applying security best practices. This training is designed to help you stay secure in the AWS Cloud and prepare for the AWS Certified Security – Specialty certification.

Description

Module 1: Introduction to Security in the AWS Cloud

  • Understand the AWS Shared Responsibility Model
  • Explore core cloud security principles
  • Review incident response strategies in AWS
  • Align DevOps processes with security engineering

Module 2: Managing Identity and Access Control

  • Define and apply IAM policies, roles, and permissions boundaries
  • Use IAM Access Analyzer for insight into access risks
  • Implement multi-factor authentication (MFA)
  • Monitor access activity with AWS CloudTrail

Module 3: Securing Web Application Environments

  • Analyze threats to 3-tier application architectures
  • Address common risks around user and data access
  • Leverage AWS Trusted Advisor for continuous improvement

Module 4: Application Security at Scale

  • Harden Amazon Machine Images (AMIs)
  • Perform automated security assessments with Amazon Inspector
  • Apply secure configuration management with AWS Systems Manager

Module 5: Data Protection and Encryption Best Practices

  • Encrypt data in S3, RDS, DynamoDB, and Glacier
  • Apply key management strategies using AWS KMS
  • Use S3 Access Analyzer and Access Points for precise control

Module 6: Network Security and Traffic Protection

  • Implement best practices for securing Amazon VPCs
  • Use VPC Traffic Mirroring for deep packet inspection
  • Respond to compromised instances
  • Secure endpoints with AWS Certificate Manager and ELB

Module 7: Centralized Monitoring and Logging

  • Configure CloudWatch, AWS Config, and Amazon Macie
  • Enable VPC Flow Logs, ELB Logs, and S3 Server Access Logs

Module 8: Log Processing and Analysis

  • Aggregate log data with Amazon Kinesis
  • Analyze security events using Amazon Athena

Module 9: Securing Hybrid Cloud Architectures

  • Connect environments with VPNs and Direct Connect
  • Secure cross-region traffic with AWS Transit Gateway

Module 10: Building Global Resilience and DDoS Protection

  • Use Route 53 and CloudFront for edge-level protection
  • Defend against attacks with AWS WAF, Shield, and Firewall Manager

Module 11: Serverless Security Practices

  • Control access in serverless environments with Amazon Cognito
  • Secure APIs with API Gateway
  • Implement least-privilege execution in AWS Lambda

Module 12: Threat Detection and Investigation

  • Identify suspicious activity with Amazon GuardDuty
  • Consolidate findings in AWS Security Hub
  • Perform forensic analysis with Amazon Detective

Module 13: Secrets and Key Management

  • Manage encryption keys using AWS KMS and CloudHSM
  • Store and rotate secrets with AWS Secrets Manager

Module 14: Automating Security by Design

  • Create secure, repeatable deployments with AWS CloudFormation
  • Standardize infrastructure with AWS Service Catalog

Module 15: Governance and Account Management at Scale

  • Manage multi-account environments with AWS Organizations
  • Enforce controls using AWS Control Tower and AWS SSO
  • Integrate centralized identity with AWS Directory Services

Prerequisites

We recommend that attendees of this course have: Working knowledge of IT security practices and infrastructure concepts Familiarity with cloud computing concepts Completed AWS Security Essentials and Architecting on AWS courses

Target Audience

This course is intended for security engineers, security architects, and information security professionals.

Objectives

Security Engineering on AWS prepares you to design, implement, and manage secure infrastructure on the AWS cloud platform. You'll learn to protect applications and data from common security threats, perform and automate security checks, and configure authentication and permissions for applications and resources. By the end of this course, you'll be able to monitor AWS resources and respond to incidents, capture and process logs, and create automated and repeatable deployments with tools such as AMIs and AWS CloudFormation. This course focuses on the security practices that AWS recommends for enhancing the security of your systems in the cloud.

Similar events

Over 90% of Fortune 100 companies use AWS, and demand for skilled AWS Solutions Architects continues to grow. In this course, you'll gain the hands-on experience and technical knowledge needed to design secure, high-performing, resilient, and efficient cloud infrastructure on AWS. Learn best practices using the AWS Well-Architected Framework while building real-world solutions that align with business objectives. This course also helps prepare you for the AWS Certified Solutions Architect – Associate exam and is ideal for professionals working toward becoming a certified AWS Solution Architect.

More Information

Cloud computing is reshaping industries, with 94% of enterprises using cloud services. The AWS Cloud Practitioner Essentials course is the perfect starting point for those new to AWS. You will learn about AWS Cloud concepts, AWS services, security, architecture, pricing, and support to build your AWS Cloud knowledge. This course also helps you prepare for the AWS Certified Cloud Practitioner exam.

More Information

Did you know that 45% of data breaches are cloud-based, with misconfigured security settings being a leading cause? As cloud adoption continues to grow, understanding AWS security is more critical than ever to protect sensitive data and maintain compliance. AWS Security Essentials provides a foundational understanding of cloud security concepts within AWS.  Gain the skills and confidence needed to secure your cloud infrastructure effectively. Whether you're an IT professional, security analyst, or business leader, this course will equip you with the essential knowledge to protect your AWS environment.

More Information

As organizations increasingly migrate to the cloud, professionals need the skills to navigate and manage this complex environment. The AWS Technical Essentials course provides a foundational understanding of essential AWS services and equips you to make informed decisions about IT solutions based on business requirements. In just one day, this instructor-led training introduces you to core AWS concepts, services, and terminology. You’ll explore tools like Amazon EC2, Amazon S3, Amazon DynamoDB, and Amazon Virtual Private Cloud (VPC)—and gain hands-on experience with real-world use cases. This technical essentials course also provides a launching point for further AWS training, helping you choose among several AWS compute services that align with your goals.

More Information

According to Amazon, millions of active customers use AWS every month—and demand is growing for professionals who can support, automate, and manage those deployments. The Cloud Operations on AWS course is designed for system administrators, operations professionals, and those seeking to become AWS Certified SysOps Administrators. Through expert-led AWS training and hands-on labs, you’ll learn how to use AWS services to configure, deploy, monitor, and troubleshoot systems in the AWS cloud. This course blends theory with practice, helping you understand how to automate repeatable deployments, maintain an AWS cloud environment, and manage access to AWS resources using IAM and AWS Systems Manager.

More Information

In this course, you will learn about the fundamental concepts, methods, and strategies for using generative AI. You will gain a solid understanding of use cases where generative AI can provide solutions and address business needs. Additionally, you will learn about practical insights into technologies related to generative AI and how you can use those technologies to solve real-world problems. By the end of the course, you will explore project planning and how to discuss implementation of generative AI in your organization.

More Information