Cloud Computing and Visualisation Category Banner Image

AWS Security Best Practices

  • Length 1 day
Course overview
View dates &
book now

Why study this course

Currently, the average cost of a security breach can be upwards of $4 million. AWS Security Best Practices provides an overview of some of the industry best practices for using AWS security and control types.

This course helps you understand your responsibilities while providing valuable guidelines for how to keep your workload safe and secure. You will learn how to secure your network infrastructure using sound design options. You will also learn how you can harden your compute resources and manage them securely. Finally, by understanding AWS monitoring and alerting, you can detect and alert on suspicious events to help you quickly begin the response process in the event of a potential compromise.

This course includes presentations, demonstrations, and hands-on labs.

Request Course Information

By submitting an enquiry, you agree to our privacy policy and receiving email and other forms of communication from us. You can opt-out at any time.


What you’ll learn

This course is designed to teach participants how to:

  • Design and implement a secure network infrastructure

  • Design and implement compute security

  • Design and implement a logging solution


AWS Partner Logo - Advanced Tier

AWS at Lumify Work

Lumify Work is an official AWS Training Partner for Australia, New Zealand, and the Philippines. Through our Authorised AWS Instructors, we can provide you with a learning path that’s relevant to you and your organisation, so you can get more out of the cloud. We offer virtual and face-to-face classroom-based training to help you build your cloud skills and enable you to achieve industry-recognised AWS Certification.


Stay ahead of the technology curve

Don’t let your tech outpace the skills of your people

Quality Instructors and Content

Expert instructors with real world experience and the latest vendor-approved in-depth course content.

Partner-Preferred Supplier

Chosen and awarded by the world's leading vendors as preferred training partner.

Ahead of the Technology Curve

No matter your chosen technologies or platforms, we can help you stay one step ahead.

Who is the course for?

This course is intended for:

  • Solutions architects, cloud engineers, including security engineers, delivery and implementation engineers, professional services, and Cloud Center of Excellence (CCOE).

We can also deliver and customise this training course for larger groups – saving your organisation time, money and resources. For more information, please contact us on 1800 U LEARN (1800 853 276)


Course subjects

Module 1: AWS Security Overview

  • Shared responsibility model

  • Customer challenges

  • Frameworks and standards

  • Establishing best practices

  • Compliance in AWS

Module 2: Securing the Network

  • Flexible and secure

  • Security inside the Amazon Virtual Private Cloud (Amazon VPC)

  • Security services

  • Third-party security solutions

Lab 1: Controlling the Network

  • Create a three-security zone network infrastructure.

  • Implement network segmentation using security groups, Network Access Control Lists (NACLs), and public and private subnets.

  • Monitor network traffic to Amazon Elastic Compute Cloud (EC2) instances using VPC flow logs.

Module 3: Amazon EC2 Security

  • Compute hardening

  • Amazon Elastic Block Store (EBS) encryption

  • Secure management and maintenance

  • Detecting vulnerabilities

  • Using AWS Marketplace

Lab 2: Securing the starting point (EC2)

  • Create a custom Amazon Machine Image (AMI).

  • Deploy a new EC2 instance from a custom AMI.

  • Patch an EC2 instance using AWS Systems Manager.

  • Encrypt an EBS volume.

  • Understand how EBS encryption works and how it impacts other operations.

  • Use security groups to limit traffic between EC2 instances to only that which is encrypted

Module 4: Monitoring and Alerting

  • Logging network traffic

  • Logging user and Application Programming Interface (API) traffic

  • Visibility with Amazon CloudWatch

  • Enhancing monitoring and alerting

  • Verifying your AWS environment

Lab 3: Security Monitoring

  • Configure an Amazon Linux 2 instance to send log files to Amazon CloudWatch.

  • Create Amazon CloudWatch alarms and notifications to monitor for failed login attempts.

  • Create Amazon CloudWatch alarms to monitor network traffic through a Network Address
    Translation (NAT) gateway

Please note: This is an emerging technology course. Course outline is subject to change as needed.


Prerequisites

Before attending this course, participants should have completed the following:


Terms & Conditions

The supply of this course by Lumify Work is governed by the booking terms and conditions. Please read the terms and conditions carefully before enrolling in this course, as enrolment in the course is conditional on acceptance of these terms and conditions.


Request Course Information

By submitting an enquiry, you agree to our privacy policy and receiving email and other forms of communication from us. You can opt-out at any time.

Select and book a course

Can't find a date you like?

Contact sales

Stay ahead of the technology curve

Don’t let your tech outpace the skills of your people

Quality Instructors and Content

Expert instructors with real world experience and the latest vendor-approved in-depth course content.

Partner-Preferred Supplier

Chosen and awarded by the world's leading vendors as preferred training partner.

Ahead of the Technology Curve

No matter your chosen technologies or platforms, we can help you stay one step ahead.


Looking for more course options?