AWSSECENG

Security Engineering on AWS

Security is a concern for both customers in the cloud, and those considering cloud adoption. An increase in cyberattacks and data leaks remains top of mind for most industry personnel. The Security Engineering on AWS course addresses these concerns by helping you better understand how to interact and build with Amazon Web Services (AWS) in a secure way. In this course, you will learn about managing identities and roles, managing and provisioning accounts, and monitoring API activity for anomalies. You will also learn about how to protect data stored on AWS. The course explores how you can generate, collect, and monitor logs to help identify security incidents. Finally, you will review detecting and investigating security incidents with AWS services.

AWS
✓ Official training AWSLevel Intermediate⏱️ 3 days (21h)

What you will learn

  • State an understanding of AWS cloud security based on the CIA triad.
  • Create and analyze authentication and authorizations with IAM.
  • Manage and provision accounts on AWS with appropriate AWS services.
  • Identify how to manage secrets using AWS services.
  • Monitor sensitive information and protect data via encryption and access controls.
  • Identify AWS services that address attacks from external sources.
  • Monitor, generate, and collect logs.
  • Identify indicators of security incidents.
  • Identify how to investigate threats and mitigate using AWS services.

Prerequisites

  • Completed the following courses: AWS Security Essentials (Classroom training) or AWS Security Fundamentals (Second Edition) (digital) and Architecting on AWS (Classroom Training)
  • Working knowledge of IT security practices and infrastructure concepts.
  • Familiarity with the AWS Cloud.

Target audience

  • Security engineers, Security architects, Cloud architects, Cloud operators working across all global segments.

Training Program

8 modules to master the fundamentals

Topics covered
  • →Explain Security in the AWS Cloud.
  • →Explain AWS Shared Responsibility Model.
  • →Summarize IAM, Data Protection, and Threat Detection and Response.
  • →State the different ways to interact with AWS using the console, CLI, and SDKs.
  • →Describe how to use MFA for extra protection.
  • →State how to protect the root user account and access keys.
Topics covered
  • →Describe how to use multi-factor authentication (MFA) for extra protection.
  • →Describe how to protect the root user account and access keys.
  • →Describe IAM policies, roles, policy components, and permission boundaries.
  • →Explain how API requests can be logged and viewed using AWS CloudTrail and how to view and analyze access history.
Activities

Hands-On Lab: Using Identity and Resource Based Policies.

Topics covered
  • →Explain how to manage multiple AWS accounts using AWS Organizations and AWS Control Tower.
  • →Explain how to implement multi-account environments with AWS Control Tower.
  • →Demonstrate the ability to use identity providers and brokers to acquire access to AWS services.
  • →Explain the use of AWS IAM Identity Center (successor to AWS Single Sign-On) and AWS Directory Service.
  • →Demonstrate the ability to manage domain user access with Directory Service and IAM Identity Center.
Activities

Hands-On Lab: Managing Domain User Access with AWS Directory Service

Topics covered
  • →Describe and list the features of AWS KMS, CloudHSM, AWS Certificate Manager (ACM), and AWS Secrets Manager.
  • →Demonstrate how to create a multi-Region AWS KMS key.
  • →Demonstrate how to encrypt a Secrets Manager secret with an AWS KMS key.
  • →Demonstrate how to use an encrypted secret to connect to an Amazon Relational Database Service (Amazon RDS) database in multiple AWS Regions
Activities

Hands-on lab: Lab 3: Using AWS KMS to Encrypt Secrets in Secrets Manager

Topics covered
  • →Monitor data for sensitive information with Amazon Macie.
  • →Describe how to protect data at rest through encryption and access controls.
  • →Identify AWS services used to replicate data for protection.
  • →Determine how to protect data after it has been archived.
Activities

Hands-on lab: Lab 4: Data Security in Amazon S3

Topics covered
  • →Describe the AWS features used to build secure infrastructure.
  • →Describe the AWS services used to create resiliency during an attack.
  • →Identify the AWS services used to protect workloads from external threats.
  • →Compare the features of AWS Shield and AWS Shield Advanced.
  • →Explain how centralized deployment for AWS Firewall Manager can enhance security.
Activities

Hands-on lab: Lab 5: Using AWS WAF to Mitigate Malicious Traffic

Topics covered
  • →Identify the value of generating and collecting logs.
  • →Use Amazon Virtual Private Cloud (Amazon VPC) Flow Logs to monitor for security events.
  • →Explain how to monitor for baseline deviations.
  • →Describe Amazon EventBridge events.
  • →Describe Amazon CloudWatch metrics and alarms.
  • →List log analysis options and available techniques.
  • →Identify use cases for using virtual private cloud (VPC) Traffic Mirroring.
Activities

Hands-on lab: Lab 6: Monitoring for and Responding to Security Incidents

Topics covered
  • →Classify incident types in incident response.
  • →Understand incident response workflows.
  • →Discover sources of information for incident response using AWS services.
  • →Understand how to prepare for incidents.
  • →Detect threats using AWS services.
  • →Analyze and respond to security findings.
Activities

Hands-on lab: Lab 7: Incident Response

Related Trainings

AWS

AWS Security Essentials

This course covers fundamental Amazon Web Services (AWS) security concepts, including AWS access control, data encryption methods, and how to secure network access to your AWS infrastructure. Based on the AWS Shared Responsibility Model, you learn your responsibilities related to implementing security in the AWS Cloud and which security-oriented services are available to you. You also learn why and how the security services help meet the security needs of your organization.

1 d
Fundamental
AWS

DevOps Engineering on AWS

DevOps Engineering on AWS teaches you how to use the combination of DevOps cultural philosophies, practices, and tools to increase your organization's ability to develop, deliver, and maintain applications and services at high velocity on AWS. This course covers Continuous Integration (CI), Continuous Delivery (CD), infrastructure as code, microservices, monitoring and logging, and communication and collaboration. Hands-on labs give you experience building and deploying AWS CloudFormation templates and CI/CD pipelines that build and deploy applications on Amazon Elastic Compute Cloud (Amazon EC2), serverless applications, and container-based applications. Labs for multi-pipeline workflows and pipelines that deploy to multiple environments are also included.

3 d
Intermediate
AWS

Advanced Architecting on AWS

In this course, each module presents a scenario with an architectural challenge to be solved. You will examine available AWS services and features as solutions to the problem. You will gain insights by participating in problem-based discussions and learning about the AWS services that you could apply to meet the challenges. Over 3 days, the course goes beyond the basics of a cloud infrastructure and covers topics to meet a variety of needs for AWS customers. Course modules focus on managing multiple AWS accounts, hybrid connectivity and devices, networking with a focus on AWS Transit Gateway connectivity, container services, automation tools for continuous integration/continuous delivery (CI/CD), security and distributed denial of service (DDoS) protection, data lakes and data stores, edge services, migration options, and managing costs. The course concludes by presenting you with scenarios and challenging you to identify the best solutions.

3 d
Advanced

Upcoming sessions

June 2, 2026
Distanciel • Français
Register
November 24, 2026
Distanciel • Français
Register

Quality Process

SFEIR Institute's commitment: an excellence approach to ensure the quality and success of all our training programs. Learn more about our quality approach

Teaching Methods Used
  • Lectures / Theoretical Slides — Presentation of concepts using visual aids (PowerPoint, PDF).
  • Technical Demonstration (Demos) — The instructor performs a task or procedure while students observe.
  • Guided Labs — Guided practical exercises on software, hardware, or technical environments.
Evaluation and Monitoring System

The achievement of training objectives is evaluated at multiple levels to ensure quality:

  • Continuous Knowledge Assessment : Verification of knowledge throughout the training via participatory methods (quizzes, practical exercises, case studies) under instructor supervision.
  • Progress Measurement : Comparative self-assessment system including an initial diagnostic to determine the starting level, followed by a final evaluation to validate skills development.
  • Quality Evaluation : End-of-session satisfaction questionnaire to measure the relevance and effectiveness of the training as perceived by participants.

2,370€ excl. VAT

per learner