Securing AWS: Infrastructure Security


Overview/Description
Expected Duration
Lesson Objectives
Course Number
Expertise Level



Overview/Description

In this 11-video course, explore a variety of Amazon Web Services (AWS) features that can help the consumer to protect cloud infrastructures and resources, including network access control lists (NACLs), security groups, and Web Application Firewalls. One of the most important aspects of AWS security begins when you design your virtual private cloud, so the first tutorial teaches you about its design. Next, you will examine how to configure the NACL, along with configuring security groups for Linux instances, and security groups for Windows instances. Following on from this, you will take a look at the Web Application Firewall (WAF). You will then explore a couple of other security services at AWS, beginning with AWS Shield Advanced, and then AWS Inspector. Then move on to AWS GuardDuty, a fully-managed threat detection service that basically continuously monitors for malicious or unauthorized behavior. Then learn how to configure a managed site-to-site VPN, and define AWS Single Sign-On (SSO) and AWS Cognito. The exercise covers infrastructure security.



Expected Duration (hours)
0.9

Lesson Objectives

Securing AWS: Infrastructure Security

  • identify the subject areas covered in this course
  • design a secure virtual private cloud
  • configure network ACLs
  • configure security groups for Linux instances
  • configure security groups for Windows instances
  • describe AWS WAF
  • describe AWS Shield and AWS Inspector
  • define AWS GuardDuty
  • configure a managed site-to-site VPN
  • define AWS SSO and AWS Cognito
  • describe secure VPC design, NACLs, security groups, AWS WAF, AWS Shield and Inspector, Site-to-Site VPN, AWS SSO, and AWS Cognito
  • Course Number:
    it_soawss_03_enus

    Expertise Level
    Intermediate