AWS Certified Security Specialty

(ITP-SCS-C01.AA1)
Lab
Get A Free Trial

Skills You’ll Get

1

SECURITY MONITORING

  • Enabling and Disabling GuardDuty
  • Creating VPC Flow Logs
  • Enabling CloudTrail
  • Creating a CloudWatch Alarm
2

LOGGING SOLUTIONS

  • Enabling Access Logging for an Amazon S3 Bucket
  • Viewing Logs Using the Lambda Console
  • Creating a Kinesis Firehose Delivery Stream
3

INFRASTRUCTURE SECURITY PART 1

  • Creating a Custom AWS VPC
  • Creating a Subnet within a VPC
  • Creating a Security Group
  • Creating a Custom Route Table
  • Creating an Internet Gateway
  • Creating a VPC Peering Connection
  • Creating a Gateway Endpoint
  • Creating an Interface Endpoint
  • Creating a Transit Gateway
4

INFRASTRUCTURE SECURITY PART 2

  • Using Amazon EC2
  • Creating an Amazon SNS Topic
  • Creating the AWS Lambda Function and Invoking It
  • Creating an AMI from an EC2 Launched Instance
  • Configuring an AWS Elastic Beanstalk Application
5

PERMISSIONS AND ROLES

  • Creating an IAM Role
  • Creating an IAM Policy
6

FEDERATION AND RESOURCE-BASED ACCESS CONTROL

  • Creating an Amazon Cognito User Pool
  • Creating an Amazon S3 Bucket
  • Creating a VPC Endpoint in Amazon OpenSearch Service
7

KEY MANAGEMENT

  • Creating and Disabling an AWS KMS Key
  • Creating an AWS CloudHSM Cluster
  • Creating CloudFront
  • Creating an Elastic Load Balancer
8

DATA ENCRYPTION AT-REST AND IN TRANSIT

  • Creating a Glacier Vault
  • Creating a DynamoDB Table
  • Creating an SQS Queue
  • Creating an Amazon Redshift Cluster
  • Configuring Amazon ElastiCache
  • Creating an Amazon EFS
  • Creating a Virtual Private Gateway

Related Courses

All Courses
scroll to top