Abdullah Şamil Güser

Domain 2: Security and Compliance

Task Statement 2.1: Understand the AWS Shared Responsibility Model

Task Statement 2.2: Understand AWS Cloud Security, Governance, and Compliance Concepts

Task Statement 2.3: Identify AWS Access Management Capabilities

Task Statement 2.4: Identify Components and Resources for Security

Course Structure

Upcoming Topics

Task Statement 2.1: Understand the AWS Shared Responsibility Model

Overview of the AWS Shared Responsibility Model

AWS Responsibilities

Customer Responsibilities

Variability of Responsibilities Based on Services

Specific Service Responsibility Examples

Exam Focus

Next Steps

Task Statement 2.2: Understand AWS Cloud Security, Governance, and Compliance Concepts

Compliance on AWS

Compliance Variability Across Services

Security Measures on AWS

Encryption Fundamentals

Logging, Auditing, and Reporting

Specific Use Case: Identifying User Actions

Least Privilege Access

Next Steps

Task Statement 2.3: Identify AWS Access Management Capabilities

User and Identity Management

AWS Account Fundamentals

Root User Management

IAM Features

Amazon Cognito

IAM Policies

S3 Security

Next Steps

Task Statement 2.4: Identify Components and Resources for Security Support

Network Security in AWS

Network Access Control Lists (NACLs)

Security Groups

AWS WAF

Security Assessments and Penetration Testing

Third-Party Software and Tools

Research and Information Resources

Next Steps

Walkthrough Question 3: AWS Shared Responsibility Model

Question Analysis

Question

Options Analysis

Correct Answer

Takeaways

Walkthrough Question 4: AWS Access Management Capabilities

Question Analysis

Question

Options Analysis

Correct Answer

Takeaways