Security and Compliance

Understand the AWS shared responsibility model, security governance, access management, and security resources.

Covers the AWS shared responsibility model including customer vs AWS responsibilities. Includes security governance and compliance concepts, encryption options, IAM capabilities, root user protection, MFA, and AWS security services like WAF, Shield, GuardDuty, Inspector, and Security Hub. Represents 30% of the exam.
5 minutes 5 Questions

Security and Compliance are fundamental pillars of AWS Cloud services, representing a shared responsibility model between AWS and its customers. AWS manages security OF the cloud, which includes physical infrastructure, hardware, networking, and the virtualization layer. Customers are responsible f…

Concepts covered: AWS shared responsibility model, Customer responsibilities on AWS, AWS responsibilities, Shared responsibilities, Responsibility shift by service type, AWS Security Hub, AWS compliance and governance concepts, AWS Artifact, Amazon GuardDuty, Compliance requirements by region and industry, Encryption in transit, Encryption at rest, Amazon CloudWatch for monitoring, AWS CloudTrail for auditing, AWS Config, Access keys and password policies, AWS IAM Identity Center (SSO), AWS Audit Manager, Amazon Inspector, AWS Shield, AWS Identity and Access Management (IAM), Protecting the AWS root user account, Principle of least privilege, AWS Secrets Manager, AWS Systems Manager Parameter Store, Multi-factor authentication (MFA), IAM users, groups, and policies, Cross-account IAM roles, Federated identity management, Root user exclusive tasks, AWS WAF (Web Application Firewall), AWS Firewall Manager, AWS Marketplace third-party security, AWS Knowledge Center, AWS Security Center and Blog, AWS Trusted Advisor for security

Test mode:
More Security and Compliance questions
1800 questions (total)