AWS Security Best Practices for Developers
1h 33mAdvanced2022-09-22
Authors

Carlos Rivas
AWS Infrastructure Expert
Course details
Security matters to everyone, but solid security practices start with the developer of an application. In this developer-centered course, instructor and AWS Certified Solutions Architect Carlos Rivas shows how to build stronger, more secure applications for deployment on Amazon Web Services. Learn core AWS security development principles around Identity and Access Management (IAM), S3 storage, and Key Management Service (KMS), to ensure your users, systems, and data are secure on the cloud. Plus, learn how to use Cognito to establish user identity without maintaining unique login credentials for each application.
Learning objectives
Identity and Access Management security
S3 security policies, encryption, and version control
KMS encryption
User authentication with Cognito
Learning objectives
Identity and Access Management security
S3 security policies, encryption, and version control
KMS encryption
User authentication with Cognito
Skills covered
Cloud SecurityAmazon Web Services (AWS)AmazonPersonaCloud Computing
Concepts
0. Introduction
- 01 - Securing your application
- 02 - What you should know
1. Identity and Access Management
- 03 - Important concepts
- 04 - Uses and access keys
- 05 - Roles and policies
- 06 - IAM key points
- 07 - Challenge - IAM roles and policies
- 08 - Solution - IAM roles and policies
2. Amazon Simple Storage Service (S3)
- 09 - S3 as a static website
- 10 - Bucket policies
- 11 - S3 bucket encryption
- 12 - S3 object versioning and MFA delete
- 13 - S3 key points
- 14 - Challenge - S3 presigned URL challenge
- 15 - Solution - S3 presigned URL challenge
3. Key Management Service Encryption
- 16 - Key Management Service (KMS) introduction
- 17 - Using AWS KMS
- 18 - KMS key points
- 19 - Challenge - Key Management Service
- 20 - Solution - Key Management Service
4. User Identities with Cognito and Web
- 21 - Cognito concepts
- 22 - Workflow
- 23 - Cognito demonstration
- 24 - Cognito key points
- 25 - Challenge - Cognito automated login
- 26 - Solution - Cognito automated login
5. Certificate Manager
- 27 - Creating and managing certificates
- 28 - Using certificates with AWS Resources
- 29 - AWS Certificates Manager and EC2 instances
6. Parameter Store and Secrets Manager
- 30 - Parameter Store for sensitive data
- 31 - Using Parameter Store from EC2
- 32 - Secrets Manager overview
7. Security Alerts in AWS
- 33 - Root login alerts
- 34 - Detecting unauthorized instance stops
- 35 - Checking for unused credentials
Conclusion
- 36 - Get familiar with AWS tools