Skip to main content
74c7e9d4-bf05-48e0-b309-b9961a31a489
previous arrow
next arrow

#AWS Security

Master AWS Security & Protect the Cloud! Learn IAM, data protection, infrastructure security, and security governance with practical, real-world concepts.
Upgrade your cloud skills with AWS Security Training at SQL School and become job-ready for modern cloud security roles.

Training Highlights

Advanced Identity & Access Management (IAM)
✅ AWS Infrastructure & Network Security
✅ Data Protection & Encryption
✅ Security Monitoring & Threat Detection
✅ Security Governance & Compliance
✅ Web, Application & DDoS Protection
✅ Cloud Workload & Container Security
✅ AWS Security Specialty Preparation

Modules We Learn

Module 1: AWS Cloud Concepts
✅Module 2: Infrastructure Security
✅Module 3: Identity and Access Management
✅Module 4: Data Protection
✅Module 5: Management and Security Governance
✅Module 6: Bonus Topic

 

AWS Security Course Contents:

Module 1: AWS Cloud Concepts

  • CloudWatch Contributor Insights
  • Amazon EventBridge
  • Amazon Athena
  • CloudTrail
  • CloudTrail – EventBridge Integration
  • CloudTrail to CloudWatch Metrics Filter – Example
  • CloudTrail – Integration with Athena
  • Monitoring Account Activity
  • Macie
  • S3 Event Notifications
  • VPC Flow Logs
  • VPC Traffic Mirroring
  • VPC Network Access Analyzer
  • Route 53 – Query Logging
  • Open Search

Module 2: Infrastructure Security

  • Bastion Host
  • Site to Site VPN
  • Client VPN
  • VPC Peering
  • DNS Resolution Options in VPC
  • VPC Endpoints
  • PrivateLink
  • NACL & Security Groups
  • Security Groups Outbound Rules & Managed Prefixes
  • AWS Transit Gateway
  • CloudFront
  • CloudFront – Geo Restriction
  • CloudFront – Signed URL & Cookies
  • CloudFront – Field Level Encryption
  • Origin Access Control and Origin Access Identity (OAC & OAI)
  • WAF
  • Shield
  • AWS Firewall Manager
  • AWS Shield Advanced – Metrics
  • DDoS Attack Protection
  • API Gateway AWS Artifact
  • Route 53 – DNSSEC
  • AWS Network Firewall
  • Amazon SES

Module 3: Identity and Access Management

  • IAM Policies in Depth
  • IAM Condition Operators
  • IAM Global condition context keys
  • IAM Permission Boundaries
  • IAM Policy Evaluation Logic
  •  Identity-Based Policies vs. Resource-Based Policies
  • ABAC (Attribute based access control)
  • IAM MFA
  • IAM Credentials Report
  • IAM Roles and PassRole to Services
  • STS
  • STS External ID Sample SCP
  • EC2 Instance Metadata
  • S3 – Authorization Evaluation Process
  • S3 – Cross Account Access and Canned ACL
  • S3 – Samples S3 Bucket Policies
  • VPC Endpoint Strategy
  • S3 – Regain Access to Locked S3 Bucket
  • S3 – Block Public Access Settings
  • S3 Access Points
  • S3 Multi-Region Access Points
  • S3 CORS
  • Cognito User Pools
  • Cognito Identity Pools
  • Cognito User Pool User Groups
  • Identity Federation & Cognito
  • AWS IAM Identity Center
  • AWS Directory Services

Module 4: Data Protection

  • Encryption
  • CloudHSM
  • KMS
  • KMS Multi Region Key
  • KMS Envelope Encryption
  • KMS Key Rotation
  • KMS Key Deletion
  • KMS Grants
  • KMS Condition Keys
  • KMS Key Policies Evaluation Process
  • KMS Key Cross-Account Access
  • KMS Asymmetric Encryption
  • KMS API Calls Limits and Data Key Caching
  • KMS with EBS
  • EFS Encryption
  • KMS with ABAC
  • KMS with Parameter Store
  • Secrets Manager
  • S3 Encryption
  • S3 Default Encryption
  • S3 Bucket Policies
  • S3 Bucket Key
  • Large File Upload to S3 with KMS Key
  • S3 Batch Encryption
  • S3 Object Lock & Glacier Vault Lock
  • S3 Lifecycle Rules
  • S3 Replication
  • Network Load Balancer Advanced
  • ELB Sticky Sessions
  • ELB SSL Certificates
  • Network Load Balancer – TLS Listeners
  • AWS Certificate Manager (ACM)
  • AWS Backup
  • Amazon Data Lifecycle Manager
  • AWS Nitro Enclaves

Module 5: Management and Security Governance

  • Organizations
  • AWS Organizations – IAM Policies & Tag Policies
  • AWS Control Tower
  • AWS Config
  • [SOA] AWS Config – Aggregators
  • Trusted Advisor
  • AWS Cost Explorer
  • AWS Cost Anomaly Detection
  • AWS Well-Architected Framework & Well-Architected Tool
  • Audit Manager
  • CloudFormation
  • CloudFormation – Drift
  • CloudFormation – Termination Protection
  • CloudFormation – Stack Policy
  • CloudFormation – Dynamic References
  • CloudFormation Guard
  • AWS Service Catalog
  • AWS Resource Access Manager (AWS RAM)

Module 6: Bonus Topic

  • Direct Connect
  • Direct Connect + S2S VPN
  • Elastic Container Registry (ECR)
  • ECR Security
  • ECS Secret Management
  • EKS Concepts
  • Lambda Security
  • Lambda in VPC
  • Lambda in VPC – Hands On
  • AWS Signer
  • AWS Verified Access
  • Glue Overview
  • Glue Security
  • Workspaces Security
  • ASG Instance Refresh
  • EBS – Data Volume Wiping
  • CloudShell
  • RDS & Aurora Security
  • EC2 Image Builder
  • Redshift Security
  • DynamoDB – Time To Live (TTL)
Empty section. Edit page to add content here.

SQL SCHOOL vs Other Institutes

SQL SCHOOL vs Other Institute Comparistion image
SQL Server Training

Training Modes

LIVE Online Training

Instructor Led

Self Paced Videos

 On-Demand

Corporate Training

With 100% Hands-On

Our Recent Success Stories

Why Choose SQL School

  • 100% Real-Time and Practical
  • ISO 9001:2008 Certified
  • Concept wise FAQs
  • TWO Real-time Case Studies, One Project
  • Weekly Mock Interviews
  • 24/7 LIVE Server Access
A man smiling and giving a thumbs up while holding a notebook.
  • Realtime Project FAQs
  • Course Completion Certificate
  • Placement Assistance
  • Job Support
  • Realtime Project Solution
  • MS Certification Guidance

SQL School Fabric Data Engineer training certificate of completion issued in January 2026 with verification ID
Verified by MonsterInsights