Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
edupls_header
certification
Filter by Categories
Start DateEnd DateClass Times (EST)Delivery/Location ?StatusPriceEnroll Now
7/28/20257/30/20259:00 AM - 5:00 PM35 Guaranteed-to-Run (GTR)$1,823.00
10/29/202510/31/20259:00 AM - 5:00 PM35 Guaranteed-to-Run (GTR)$1,823.00
7/28/2025 - 7/30/2025
9:00 AM - 5:00 PM
35
Guaranteed-to-Run (GTR)
$1,823.00
10/29/2025 - 10/31/2025
9:00 AM - 5:00 PM
35
Guaranteed-to-Run (GTR)
$1,823.00

Train your entire team with our Private Group Training solutions. AstraTech specializes in creating customized training programs to fit your organization’s unique learning needs and business objectives. Take advantage of multiple student discounts, customized curriculum and flexible scheduling with Private Group Training from AstraTech!

    On-Demand Learning (ODL) is a self-paced training solution designed to work around your individual schedule, budget, and learning needs. Our ODL courses provide you with exclusive access to interactive platforms combining high-quality instructor videos from subject matter experts, official courseware and study materials, hands-on labs, practice exercises, skill assessments and knowledge checks. The modular, self-paced ODL course structure adapts to your unique learning needs and style, providing an optimal training experience.

    Train your entire team with our Private Group Training solutions. AstraTech specializes in creating customized training programs to fit your organization’s unique learning needs and business objectives. Take advantage of multiple student discounts, customized curriculum and flexible scheduling with Private Group Training from AstraTech!

    Security Engineering on AWS

    $2,025 | 3 days

    Upgrade your tech skills with this training course. Launch your career to the stars with AstraTech IT Certification Training!

    Please select a Learning Method below to get started:

    • Amazon Web Services (AWS)

    About this Course

    SKILL LEVEL: 
    • Advanced
    BRAND/TECHNOLOGY: 
    TOPICS: 

    Security Engineering on AWS Course Outline

    Cybersecurity threats are escalating, and organizations need professionals who can efficiently use AWS security services to stay secure in the AWS Cloud. Security Engineering on AWS focuses on the security practices that AWS recommends for enhancing the security of your data and systems in the cloud. This course highlights the security features of AWS key services including compute, storage, networking, and database services. You’ll also learn how to leverage AWS services and tools for automation, continuous monitoring and logging, and responding to security incidents.

    Through hands-on labs and real-world scenarios, you’ll gain practical experience in implementing security solutions, understanding specialized data classifications and AWS data protection mechanisms, and applying security best practices. This training is designed to help you stay secure in the AWS Cloud and prepare for the AWS Certified Security ? Specialty certification.

    This course is intended for security engineers, security architects, and information security professionals.

    We recommend that attendees of this course have:

    Security Engineering on AWS prepares you to design, implement, and manage secure infrastructure on the AWS cloud platform. You’ll learn to protect applications and data from common security threats, perform and automate security checks, and configure authentication and permissions for applications and resources.

    By the end of this course, you’ll be able to monitor AWS resources and respond to incidents, capture and process logs, and create automated and repeatable deployments with tools such as AMIs and AWS CloudFormation. This course focuses on the security practices that AWS recommends for enhancing the security of your systems in the cloud.

    Module 1: Introduction to Security in the AWS Cloud

    • Understand the AWS Shared Responsibility Model
    • Explore core cloud security principles
    • Review incident response strategies in AWS
    • Align DevOps processes with security engineering

    Module 2: Managing Identity and Access Control

    • Define and apply IAM policies, roles, and permissions boundaries
    • Use IAM Access Analyzer for insight into access risks
    • Implement multi-factor authentication (MFA)
    • Monitor access activity with AWS CloudTrail

    Module 3: Securing Web Application Environments

    • Analyze threats to 3-tier application architectures
    • Address common risks around user and data access
    • Leverage AWS Trusted Advisor for continuous improvement

    Module 4: Application Security at Scale

    • Harden Amazon Machine Images (AMIs)
    • Perform automated security assessments with Amazon Inspector
    • Apply secure configuration management with AWS Systems Manager

    Module 5: Data Protection and Encryption Best Practices

    • Encrypt data in S3, RDS, DynamoDB, and Glacier
    • Apply key management strategies using AWS KMS
    • Use S3 Access Analyzer and Access Points for precise control

    Module 6: Network Security and Traffic Protection

    • Implement best practices for securing Amazon VPCs
    • Use VPC Traffic Mirroring for deep packet inspection
    • Respond to compromised instances
    • Secure endpoints with AWS Certificate Manager and ELB

    Module 7: Centralized Monitoring and Logging

    • Configure CloudWatch, AWS Config, and Amazon Macie
    • Enable VPC Flow Logs, ELB Logs, and S3 Server Access Logs

    Module 8: Log Processing and Analysis

    • Aggregate log data with Amazon Kinesis
    • Analyze security events using Amazon Athena

    Module 9: Securing Hybrid Cloud Architectures

    • Connect environments with VPNs and Direct Connect
    • Secure cross-region traffic with AWS Transit Gateway

    Module 10: Building Global Resilience and DDoS Protection

    • Use Route 53 and CloudFront for edge-level protection
    • Defend against attacks with AWS WAF, Shield, and Firewall Manager

    Module 11: Serverless Security Practices

    • Control access in serverless environments with Amazon Cognito
    • Secure APIs with API Gateway
    • Implement least-privilege execution in AWS Lambda

    Module 12: Threat Detection and Investigation

    • Identify suspicious activity with Amazon GuardDuty
    • Consolidate findings in AWS Security Hub
    • Perform forensic analysis with Amazon Detective

    Module 13: Secrets and Key Management

    • Manage encryption keys using AWS KMS and CloudHSM
    • Store and rotate secrets with AWS Secrets Manager

    Module 14: Automating Security by Design

    • Create secure, repeatable deployments with AWS CloudFormation
    • Standardize infrastructure with AWS Service Catalog

    Module 15: Governance and Account Management at Scale

    • Manage multi-account environments with AWS Organizations
    • Enforce controls using AWS Control Tower and AWS SSO
    • Integrate centralized identity with AWS Directory Services