Become an AWS certified security specialist, strengthen your cloud defenses, and unlock advanced techniques for incident response, logging, identity management, and more
Key Features
Stay updated with the most current SCS-C02 exam syllabus
Gain modern cloud security skills to build robust security solutions
Access online exam prep resources like mock exams, flashcards, and exam tips to help with preparation
Purchase of this book unlocks access to web-based exam prep resources such as mock exams and flashcards
Book Description
The AWS Certified Security – Specialty exam validates your expertise in advanced cloud security, a crucial skill set in today’s cloud market. With the latest updates and revised study material, this second edition provides an excellent starting point for your exam preparation.
You’ll learn the fundamentals of core services, which are essential prerequisites before delving into the six domains covered in the exam. The book addresses various security threats, vulnerabilities, and attacks, such as DDoS attacks, offering insights into effective mitigation strategies at different layers. You’ll learn different tools available in Amazon Web Services (AWS) to secure your Virtual Private Cloud and allow the correct traffic to travel securely to your workloads. As you progress, you’ll explore the intricacies of AWS EventBridge and IAM services. Additionally, you’ll get lifetime access to supplementary online resources, including mock exams with exam-like timers, detailed solutions, interactive flashcards, and invaluable exam tips, all accessible across various devices such as PCs, tablets, and smartphones.
Ultimately, armed with the knowledge and skills acquired from this AWS security guide, you’ll be well-prepared to pass the exam and design secure AWS solutions with confidence.
What you will learn
Apply cutting-edge AWS security techniques for robust cloud defenses
Implement the AWS shared responsibility model effectively
Configure AWS resources to meet specific security requirements
Configure and manage access controls and policies in AWS
Manage environments with AWS Security Hub and GuardDuty
Monitor and log tasks efficiently using AWS logging and monitoring services
Create bucket policies for users with predefined permissions to access
Create and manage private certificate authorities in AWS ACM
Who this book is for
This book is for system administrators or security professionals looking to gain AWS security certification. Prior experience in securing cloud environments is necessary to get the most out of this book.
Table of Contents
AWS Shared Responsibility Model
Fundamental AWS Services
Understanding Attacks on Cloud Environments
Incident Response
Managing Your Environment with AWS Config
Event Management with AWS Security Hub and GuardDuty
Logs Generated by AWS Services
CloudWatch and CloudWatch Metrics
Parsing Logs and Events with AWS Native Tools
Configuring Infrastructure Security
Securing EC2 Instances
Managing Key Infrastructure
Access Management
Working with Access Policies
Federated and Mobile Access
Using Active Directory Services to Manage Access
Protecting Data in Flight and at Rest
Securely Connecting to your AWS Environment
Using Certificates and Certificate Services in AWS
Managing Secrets Securely in AWS
[Hidden content]