AWS Well-Architected Framework: Security Pillar
1h 13mIntermediate2020-07-24
Authors

Mark Wilkins
Author, Technical Trainer, AWS Cloud Expert
Course details
The AWS Well-Architected Framework helps enterprise architects build more secure, high-performing, resilient, and efficient cloud-based infrastructure for their applications. The Framework comprises five pillars: operational excellence, security, reliability, performance efficiency, and cost optimization. This course takes a deeper look at the second pillar: security. Explore design principles for secure infrastructure, learn how to leverage AWS Identity and Access Management tools, and find out how to protect your organization's AWS credentials. Discover how to conduct effective security audits and put protections into place to secure your infrastructure and your data. Instructor Mark Wilkins also provides guidance on managing an incident response program. Each lesson is designed with Amazon best practices in mind, helping you leverage the Well-Architected Framework tools as
well as study topics featured in key AWS certifications.
Topics include:
Design principals
Identity and Access Management (IAM)
Protecting AWS credentials
Identifying threats
Auditing security
Infrastructure protection
Protecting data at rest and in transit
Responding to security incidents
Managing incident response
well as study topics featured in key AWS certifications.
Topics include:
Design principals
Identity and Access Management (IAM)
Protecting AWS credentials
Identifying threats
Auditing security
Infrastructure protection
Protecting data at rest and in transit
Responding to security incidents
Managing incident response
Skills covered
Amazon Web Services (AWS)AmazonCloud ServicesCloud PlatformsCloud ComputingDeep Dive (X:Y)
Concepts
Introduction
- Understanding the AWS Well-Architected Framework - The security pillar
- What you should know
Design Principles of the Security Pillar
- Security pillar overview
- Design principles
- Identity and Access Management
- Demo - IAM security overview
- Protecting AWS credentials
- Identify threats - Detective controls
Identity and Security
- AWS detective controls for security
- Implement an auditing workflow
- Challenge - Review a CloudTrail event
- Solution - Review a CloudTrail event
Auditing
- Auditing and notifications
- Infrastructure protection
- Key AWS services for infrastucture protection
Data and Protection
- Data protection methods
- Key AWS services for data protection
- Protecting your data at rest at AWS
- Protecting data in transit at AWS
- Responding to security incidents
- Managing incident response
- Demo - Using the Well-Architected tool
Conclusion
- Next steps