AWS Certified SysOps Administrator Associate (SOA-C02): Security and Compliance
Field | Description / Template |
|---|---|
Purpose | This course equips learners with the skills to secure AWS environments and ensure compliance with industry standards. It covers identity and access management, threat detection, encryption, multi-account security, and governance. Learners will gain hands-on experience implementing security controls and monitoring tools while preparing for the SOA-C02 certification exam. |
Audience | System administrators, cloud engineers, DevOps professionals, and AWS certification aspirants responsible for securing AWS workloads. |
Role | SysOps Administrator, Cloud Engineer, Security Engineer, DevOps Engineer, Infrastructure Engineer. |
Domain | Cloud Security, Governance, Risk & Compliance (GRC), Cloud Computing |
Skill Level | Intermediate |
Style | Hands-on, lab-driven learning with real-world security scenarios, AWS console walkthroughs, and practical exercises focused on securing infrastructure and ensuring compliance. |
Duration | 10–14 hours |
Related Technologies | AWS IAM, AWS Identity Center, AWS Organizations, AWS Control Tower, AWS KMS, AWS Certificate Manager, AWS WAF, AWS Security Hub, Amazon GuardDuty, AWS Systems Manager, AWS Secrets Manager, AWS CloudTrail |
Course Description
This course provides a comprehensive understanding of security and compliance in AWS environments. Learners will begin with core security concepts such as identity and access management (IAM), multi-factor authentication (MFA), and compliance frameworks.
The course explores advanced security topics including AWS Identity Center, auditing access issues, and comparing security tools like AWS Inspector and Trusted Advisor. Learners will also implement security at scale using AWS Organizations, Service Control Policies, and Control Tower.
Additionally, the course covers encryption and data protection using AWS KMS, secrets management, web application security with AWS WAF, and threat detection using Amazon GuardDuty and AWS Security Hub. Through hands-on labs and real-world scenarios, learners will develop the skills needed to secure AWS environments and meet compliance requirements while preparing for the AWS Certified SysOps Administrator Associate (SOA-C02) exam.
Who is this course for
System administrators securing AWS infrastructure
Cloud engineers managing access and compliance
DevOps engineers implementing security best practices
AWS certification aspirants (SysOps Administrator Associate)
Professionals working in cloud security and governance
Course Objectives
By the end of this course, learners will be able to:
Implement identity and access management using IAM and Identity Center
Configure multi-factor authentication (MFA) and secure access controls
Audit and troubleshoot access issues in AWS environments
Secure multi-account environments using AWS Organizations and Control Tower
Encrypt data using AWS KMS and manage certificates
Protect applications using AWS WAF and security services
Detect threats using Amazon GuardDuty and AWS Security Hub
Manage secrets securely using AWS Secrets Manager and Parameter Store
Ensure compliance with AWS security frameworks and standards
Prepare effectively for the SOA-C02 certification exam
Prerequisites
Basic understanding of AWS core services
Familiarity with cloud security concepts
Some experience with AWS environments is helpful
Basic knowledge of networking and access control (optional)
Course outline
Section 1: Introducing Security and Compliance
Compliance on AWS
Understanding Distributed Denial of Service (DDoS)
AWS Marketplace Security Products
Refresh
Introduction to AWS Identity and Access Management (IAM)
Lab: Creating Custom IAM Policies and Roles
Lab: Enabling MFA and Reporting with IAM
Section 2: Managing Security
Introducing AWS Identity Center
Auditing and Troubleshooting Access Issues
AWS Inspector vs. Trusted Advisor
Section 3: Securing your AWS Environment
Introducing AWS Organizations
Service Control Policies
Securing Multiple Accounts with AWS Control Tower and Organizations
Security Token Service (STS)
AWS Key Management Service (KMS)
AWS Certificate Manager
AWS Web Application Firewall (WAF)
Lab: Configuring AWS Web Application Firewall (WAF)
Differentiating Dedicated Instances vs. Dedicated Hosts
Using AWS Systems Manager Parameter Store
Lab: Securely Storing Secrets Using AWS Secrets Manager
Understanding AWS Service Quotas
Reviewing the AWS Shared Responsibility Model
Protecting Logs within CloudTrail
Lab: Introducing AWS Security Hub
Section 4: What is Guard Duty?
Exploring Amazon GuardDuty
Lab: Working with Amazon GuardDuty
Section 5: Summary
Review: Security and Compliance Summary - Part 1
Review: Security and Compliance Summary - Part 2
Security and Compliance Quiz

