Skip to Content
AWS Certified Security - Specialty Exam Prep: SCS-C02
video

AWS Certified Security - Specialty Exam Prep: SCS-C02

by Alfredo Deza, Noah Gift
November 2023
Advanced
6h 5m
English
Pragmatic AI Labs

Overview

AWS Certified Security - Specialty Exam Prep

This video series provides comprehensive preparation for the AWS Certified Security - Specialty (SCS-C02) exam. Lessons Covered Include:

Domain 1: Threat Detection and Incident Response
  • 1.0 Introduction
  • 1.1 Designing and Implementing Incident Response Plans
  • 1.2 Detecting Security Threats and Anomalies with AWS Services
  • 1.3 Responding to Compromised Resources and Workloads
  • 1.4 Automating Incident Response with AWS Lambda
  • 1.5 Conducting Root Cause Analysis with Amazon Detective
  • 1.6 Capturing Forensics Data from Compromised Resources
  • 1.7 Querying Logs to Validate Security Events
  • 1.8 Preserving Forensic Artifacts with S3 Object Lock
  • 1.9 Preparing and Recovering Services After Incidents
  • 1.10 Incident Response Case Study
  • 1.11 Practice Exam - Threat Detection and Response
  • 1.12 Threat Detection and Incident Response Summary

Learning Objectives

  • Understand best practices for incident response in the cloud
  • Explore AWS services to detect security threats
  • Learn how to respond to compromised resources
Domain 2: Security Logging and Monitoring
  • 2.0 Introduction
  • 2.1 Designing and Implementing Monitoring and Alerting
  • 2.2 Troubleshooting Security Monitoring and Alerting
  • 2.3 Designing and Implementing Logging Solutions
  • 2.4 Troubleshooting Logging Solutions
  • 2.5 Designing Log Analysis Solutions
  • 2.6 Configuring AWS CloudTrail for Logging
  • 2.7 Analyzing Logs with Amazon Athena
  • 2.8 Monitoring Case Study
  • 2.9 Practice Exam - Logging and Monitoring
  • 2.10 Optimizing Log Storage Lifecycles
  • 2.11 Third Party Log Analysis Tools
  • 2.12 Security Logging and Monitoring Summary

Learning Objectives

  • Understand how to set up monitoring and alerts for security
  • Learn best practices for logging and log analysis
  • Gain skills in troubleshooting logging and monitoring
Domain 3: Infrastructure Security
  • 3.0 Introduction
  • 3.1 Designing and Implementing Edge Service Security
  • 3.2 Designing and Implementing Network Security
  • 3.3 Designing and Securing Compute Workloads
  • 3.4 Troubleshooting Network Security
  • 3.5 Securing EC2 Instances with SSM
  • 3.6 Scanning Images for Vulnerabilities
  • 3.7 Infrastructure Security Case Study
  • 3.8 Practice Exam - Infrastructure Security
  • 3.9 Integrating AWS Firewall Manager
  • 3.10 Applying Security Best Practices to Lambdas
  • 3.11 Hardening AMIs with EC2 Image Builder
  • 3.12 Infrastructure Security Summary

Learning Objectives

  • Learn how to secure AWS network infrastructure
  • Understand options for compute and workload security
  • Gain skills in troubleshooting infrastructure issues
Domain 4: Identity and Access Management
  • 4.0 Introduction
  • 4.1 Designing Authentication for AWS Resources
  • 4.2 Designing Authorization for AWS Resources
  • 4.3 Troubleshooting with IAM Access Analyzer
  • 4.4 Enforcing Least Privilege Access
  • 4.5 Separating Duties with IAM Roles
  • 4.6 Identity and Access Management Case Study
  • 4.7 Practice Exam - Identity and Access Management
  • 4.8 Securing Root User Credentials
  • 4.9 IAM Policy Simulator for Troubleshooting
  • 4.10 Enabling Federated Access with SSO
  • 4.11 Managing Credentials and Secrets
  • 4.12 Identity and Access Management Summary

Learning Objectives

  • Master IAM best practices for authentication and authorization
  • Understand how to apply least privilege and separation of duties
  • Learn to troubleshoot IAM issues
Domain 5: Data Protection
  • 5.0 Introduction
  • 5.1 Data in Transit Confidentiality and Integrity
  • 5.2 Data at Rest Confidentiality and Integrity
  • 5.3 Managing Data at Rest Lifecycles
  • 5.4 Protecting Credentials, Secrets, and Keys
  • 5.5 Encrypting Data with AWS KMS
  • 5.6 Data Protection Case Study
  • 5.7 Practice Exam - Data Protection
  • 5.8 Enforcing Data Retention with Glacier
  • 5.9 Preventing Data Deletion with S3 Object Lock
  • 5.10 Rotating RDS Credentials
  • 5.11 Encrypting Data in Transit with SSL/TLS
  • 5.12 Data Protection Summary

Learning Objectives

  • Learn techniques to protect data in transit and at rest
  • Understand how to manage data lifecycles
  • Gain skills in managing credentials and secrets
Domain 6: Management and Security Governance
  • 6.0 Introduction
  • 6.1 Strategies for Central Account Deployment
  • 6.2 Secure and Consistent Cloud Deployment
  • 6.3 Evaluating Compliance of AWS Resources
  • 6.4 Identifying Security Gaps through Reviews and Cost
  • 6.5 AWS Organizations SCP Best Practices
  • 6.6 Governance Case Study
  • 6.7 Practice Exam - Governance
  • 6.8 Automating Security Deployments
  • 6.9 Tagging Resources for Governance
  • 6.10 AWS Config for Security Assessments
  • 6.11 AWS Well Architected Tool
  • 6.12 Governance and Security Management Summary

Learning Objectives

  • Understand best practices for governing accounts and resources
  • Learn how to align security with organizational requirements
  • Gain skills in compliance, auditing, and deployment
Additional Popular Resources
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.

Watch now

Unlock full access

More than 5,000 organizations count on O’Reilly

AirBnbBlueOriginElectronic ArtsHomeDepotNasdaqRakutenTata Consultancy Services

QuotationMarkO’Reilly covers everything we've got, with content to help us build a world-class technology community, upgrade the capabilities and competencies of our teams, and improve overall team performance as well as their engagement.
Julian F.
Head of Cybersecurity
QuotationMarkI wanted to learn C and C++, but it didn't click for me until I picked up an O'Reilly book. When I went on the O’Reilly platform, I was astonished to find all the books there, plus live events and sandboxes so you could play around with the technology.
Addison B.
Field Engineer
QuotationMarkI’ve been on the O’Reilly platform for more than eight years. I use a couple of learning platforms, but I'm on O'Reilly more than anybody else. When you're there, you start learning. I'm never disappointed.
Amir M.
Data Platform Tech Lead
QuotationMarkI'm always learning. So when I got on to O'Reilly, I was like a kid in a candy store. There are playlists. There are answers. There's on-demand training. It's worth its weight in gold, in terms of what it allows me to do.
Mark W.
Embedded Software Engineer

You might also like

AWS Certified Security – Specialty Exam Guide

AWS Certified Security – Specialty Exam Guide

Wilberto Palomar, Stuart Scott
AWS Certified SysOps Administrator - Associate (SOA-C02) Exam Cram

AWS Certified SysOps Administrator - Associate (SOA-C02) Exam Cram

Marko Sluga, Richard Crisci, William Rothwell

Publisher Resources

ISBN: 07162023VIDEOPAIMLOtherPublisher WebsiteOther