AWS Certified SysOps Administrator Associate (SOA-C02): Security and Compliance

Field

Description / Template

Purpose

This course equips learners with the skills to secure AWS environments and ensure compliance with industry standards. It covers identity and access management, threat detection, encryption, multi-account security, and governance. Learners will gain hands-on experience implementing security controls and monitoring tools while preparing for the SOA-C02 certification exam.

Audience

System administrators, cloud engineers, DevOps professionals, and AWS certification aspirants responsible for securing AWS workloads.

Role

SysOps Administrator, Cloud Engineer, Security Engineer, DevOps Engineer, Infrastructure Engineer.

Domain

Cloud Security, Governance, Risk & Compliance (GRC), Cloud Computing

Skill Level

Intermediate

Style

Hands-on, lab-driven learning with real-world security scenarios, AWS console walkthroughs, and practical exercises focused on securing infrastructure and ensuring compliance.

Duration

10–14 hours

Related Technologies

AWS IAM, AWS Identity Center, AWS Organizations, AWS Control Tower, AWS KMS, AWS Certificate Manager, AWS WAF, AWS Security Hub, Amazon GuardDuty, AWS Systems Manager, AWS Secrets Manager, AWS CloudTrail

Course Description

This course provides a comprehensive understanding of security and compliance in AWS environments. Learners will begin with core security concepts such as identity and access management (IAM), multi-factor authentication (MFA), and compliance frameworks.

The course explores advanced security topics including AWS Identity Center, auditing access issues, and comparing security tools like AWS Inspector and Trusted Advisor. Learners will also implement security at scale using AWS Organizations, Service Control Policies, and Control Tower.

Additionally, the course covers encryption and data protection using AWS KMS, secrets management, web application security with AWS WAF, and threat detection using Amazon GuardDuty and AWS Security Hub. Through hands-on labs and real-world scenarios, learners will develop the skills needed to secure AWS environments and meet compliance requirements while preparing for the AWS Certified SysOps Administrator Associate (SOA-C02) exam.

Who is this course for

  • System administrators securing AWS infrastructure

  • Cloud engineers managing access and compliance

  • DevOps engineers implementing security best practices

  • AWS certification aspirants (SysOps Administrator Associate)

  • Professionals working in cloud security and governance

Course Objectives

By the end of this course, learners will be able to:

  • Implement identity and access management using IAM and Identity Center

  • Configure multi-factor authentication (MFA) and secure access controls

  • Audit and troubleshoot access issues in AWS environments

  • Secure multi-account environments using AWS Organizations and Control Tower

  • Encrypt data using AWS KMS and manage certificates

  • Protect applications using AWS WAF and security services

  • Detect threats using Amazon GuardDuty and AWS Security Hub

  • Manage secrets securely using AWS Secrets Manager and Parameter Store

  • Ensure compliance with AWS security frameworks and standards

  • Prepare effectively for the SOA-C02 certification exam

Prerequisites

  • Basic understanding of AWS core services

  • Familiarity with cloud security concepts

  • Some experience with AWS environments is helpful

  • Basic knowledge of networking and access control (optional)

Course outline

Section 1: Introducing Security and Compliance

  1. Compliance on AWS

  2. Understanding Distributed Denial of Service (DDoS)

  3. AWS Marketplace Security Products

  4. Refresh

  5. Introduction to AWS Identity and Access Management (IAM)

  6. Lab: Creating Custom IAM Policies and Roles

  7. Lab: Enabling MFA and Reporting with IAM

Section 2: Managing Security

  1. Introducing AWS Identity Center

  2. Auditing and Troubleshooting Access Issues

  3. AWS Inspector vs. Trusted Advisor

Section 3: Securing your AWS Environment

  1. Introducing AWS Organizations

  2. Service Control Policies

  3. Securing Multiple Accounts with AWS Control Tower and Organizations

  4. Security Token Service (STS)

  5. AWS Key Management Service (KMS)

  6. AWS Certificate Manager

  7. AWS Web Application Firewall (WAF)

  8. Lab: Configuring AWS Web Application Firewall (WAF)

  9. Differentiating Dedicated Instances vs. Dedicated Hosts

  10. Using AWS Systems Manager Parameter Store

  11. Lab: Securely Storing Secrets Using AWS Secrets Manager

  12. Understanding AWS Service Quotas

  13. Reviewing the AWS Shared Responsibility Model

  14. Protecting Logs within CloudTrail

  15. Lab: Introducing AWS Security Hub

Section 4: What is Guard Duty?

  1. Exploring Amazon GuardDuty

  2. Lab: Working with Amazon GuardDuty

Section 5: Summary

  1. Review: Security and Compliance Summary - Part 1

  2. Review: Security and Compliance Summary - Part 2

  3. Security and Compliance Quiz


Copyright © 2026 microskill.ai

Copyright © 2026 microskill.ai