Zum Hauptinhalt springen
Nicht aus der Schweiz? Besuchen Sie lehmanns.de

AWS Certified Security Study Guide (eBook)

Specialty (SCS-C02) Exam
eBook Download: EPUB
2025 | 2. Auflage
862 Seiten
Sybex (Verlag)
978-1-394-25347-0 (ISBN)

Lese- und Medienproben

AWS Certified Security Study Guide - Mauricio Muñoz, Dario Lucas Goldfarb, Alexandre M. S. P. Moraes, Omner Barajas, Andres Gonzalez-Santos, Rogerio Kasa
Systemvoraussetzungen
46,99 inkl. MwSt
(CHF 45,90)
Der eBook-Verkauf erfolgt durch die Lehmanns Media GmbH (Berlin) zum Preis in Euro inkl. MwSt.
  • Download sofort lieferbar
  • Zahlungsarten anzeigen
A practical and comprehensive guide to the AWS Certified Security exam and your next AWS cloud security job

In the newly revised second edition of AWS Certified Security Study Guide: Specialty (SCS-C02) Exam, a team of veteran Amazon Web Services cloud security experts delivers a comprehensive roadmap to succeeding on the challenging AWS Certified Security Specialty certification exam. You'll prepare for the exam faster and smarter with authoritative content, an assessment test, real-world examples, practical exercises, and updated chapter review questions. You'll also acquire the on-the-job skills you need to hit the ground running in your next AWS cloud security position.

This book offers complete coverage of every tested exam objective, including threat detection, incident response, security logging and monitoring, cloud infrastructure security, identity and access management (IAM), data protection, and management and security governance.
It also includes:

  • Complimentary access to the hands-on, digital Sybex learning environment and test bank, with hundreds of practice questions, flashcards, and a glossary of important terminology, accessible from a wide variety of devices
  • All the material you need to conquer the difficult SCS-C02 exam on your first attempt
  • Quick reference material ideal for fast on-the-job use in any AWS cloud security-related role

An up-to-date and essential study companion for anyone preparing to take the AWS Certified Security (SCS-C02) exam, this study guide is also ideal for aspiring and practicing AWS cloud security professionals seeking a refresher on critical knowledge you'll need every day at your current or next job.



ABOUT THE AUTHORS

MAURICIO MUÑOZ is a Senior Manager of a Specialist Solutions Architects team at AWS in Latin America.

DARÍO GOLDFARB is a Security Solutions Architect at AWS in Latin America.

ALEXANDRE M.S.P. MORAES is a Director of TelTec, a Brazilian systems integrator focused on network design, security architecture, and cloud computing.

OMNER BARAJAS is a Security Specialist Solutions Architect at AWS in Mexico. He has more than 18 years of professional experience in IT.

ANDRÉS GONZÁLEZ SANTOS is a Senior Security Architect at AWS in Latin America.

ROGERIO KASA is a Senior Security Solutions Architect at AWS in Latin America.


A practical and comprehensive guide to the AWS Certified Security exam and your next AWS cloud security job In the newly revised second edition of AWS Certified Security Study Guide: Specialty (SCS-C02) Exam, a team of veteran Amazon Web Services cloud security experts delivers a comprehensive roadmap to succeeding on the challenging AWS Certified Security Specialty certification exam. You'll prepare for the exam faster and smarter with authoritative content, an assessment test, real-world examples, practical exercises, and updated chapter review questions. You'll also acquire the on-the-job skills you need to hit the ground running in your next AWS cloud security position. This book offers complete coverage of every tested exam objective, including threat detection, incident response, security logging and monitoring, cloud infrastructure security, identity and access management (IAM), data protection, and management and security governance. It also includes: Complimentary access to the hands-on, digital Sybex learning environment and test bank, with hundreds of practice questions, flashcards, and a glossary of important terminology, accessible from a wide variety of devices All the material you need to conquer the difficult SCS-C02 exam on your first attempt Quick reference material ideal for fast on-the-job use in any AWS cloud security-related role An up-to-date and essential study companion for anyone preparing to take the AWS Certified Security (SCS-C02) exam, this study guide is also ideal for aspiring and practicing AWS cloud security professionals seeking a refresher on critical knowledge you'll need every day at your current or next job.

Introduction


As the pioneer and world leader of cloud computing, Amazon Web Services (AWS) has positioned security as its highest priority. Throughout its history, the cloud provider has constantly added security-specific services to its offerings as well as security features to its ever-growing portfolio. Consequently, the AWS Certified Security—Specialty certification offers a great way for IT professionals to achieve industry recognition as cloud security experts and learn how to secure AWS environments, both in concept and practice.

According to the AWS Certified Security Specialty Exam Guide, the corresponding certification attests your ability to demonstrate the following:

  • An understanding of specialized data classifications and AWS data protection mechanisms
  • An understanding of data-encryption methods and AWS mechanisms to implement them
  • An understanding of secure Internet protocols and AWS mechanisms to implement them
  • A working knowledge of AWS security services and features of services to provide a secure production environment
  • Competency from two or more years of production deployment experience in using AWS security services and features
  • The ability to make trade-off decisions regarding cost, security, and deployment complexity to meet a set of application requirements
  • An understanding of security operations and risks

Through multiple choice and multiple response questions, you will be tested on your ability to design, operate, and troubleshoot secure AWS architectures composed of compute, storage, networking, and monitoring services. It is expected that you know how to deal with different business objectives (such as cost optimization, agility, and regulations) to determine the best solution for a described scenario.

The AWS Certified Security—Specialty exam is intended for individuals who perform a security role for three to five years with at least two years of hands-on experience securing AWS workloads.

What Does This Book Cover?


To help you prepare for the AWS Certified Security Specialty (SCS-C02) certification exam, AWS Certified Security Study Guide Specialty (SCS-C02) Exam, Second Edition explores the following topics:

  • Chapter 1: Security Fundamentals  This chapter introduces you to basic security definitions and foundational networking concepts. It also explores major types of attacks, along with the AAA architecture, security frameworks, practical models, and other solutions. In addition, it discusses the TCP/IP protocol stack.
  • Chapter 2: Cloud Security Principles and Frameworks  This chapter discusses critical AWS Cloud security concepts such as its shared responsibility model, AWS hypervisors, AWS security certifications, the AWS Well-Architected Framework, and the AWS Marketplace. It also addresses both security of the cloud and security in the cloud. These concepts are foundational for working with AWS.
  • Chapter 3: Management and Security Governance  This chapter discusses strategies to govern your workloads effectively using multiple AWS accounts and AWS Organizations to centrally manage security services with delegated administration and applying guardrails such as SCPs (Service Control Policies) as a technical solution to enforce policies across your organization. It also addresses how AWS Control Tower helps to consistently deploy architectures based on best practices and security guardrails to protect your workloads.
  • Chapter 4: Identity and Access Management  This chapter explores AWS Identity and Access Management (IAM), which establishes the foundation for all resource interactions within AWS accounts. It covers authentication methods through various interfaces (AWS Console, CLI, and SDKs) and explains how to implement authorization through policies and permissions. The chapter also addresses critical security features, including multifactor authentication, identity federation, and AWS Secrets Manager, while emphasizing best practices for securing AWS environments. Key concepts include role-based access, cross-account permissions, and the principle of least privilege.
  • Chapter 5: Security Logging and Monitoring  This chapter discusses how to gather information about the status of your resources and the events they produce through a four-stage framework: resources state, events collection, events analysis, and action. Key services include AWS Config, CloudTrail, CloudWatch, Inspector, Security Lake, Systems Manager, Trusted Advisor, and EventBridge, which work together to provide comprehensive visibility and automated responses to security events in AWS environments.
  • Chapter 6: Infrastructure Protection  This chapter explores AWS networking concepts such as Amazon VPC, subnets, route tables, and other features that are related to network address translation (NAT gateways and NAT instances) and traffic filtering (security groups and network access control lists). It also addresses AWS Elastic Load Balancing and how security services such as AWS Web Application Firewall can provide secure access to your cloud-based applications. Finally, it discusses the AWS Shield and AWS’s unique approach to mitigate distributed denial-of-service attacks.
  • Chapter 7: Data Protection  This chapter discusses protecting data using a variety of security services and best practices, including AWS Key Management Service (KMS), the cloud hardware security module (CloudHSM), and AWS Certificate Manager. It also covers creating a customer master key (CMK) in AWS KMS, protecting Amazon S3 buckets, and how Amazon Macie can deploy machine learning to identify personal identifiable information (PII).
  • Chapter 8: Threat Detection and Incident Response  This chapter covers AWS threat detection services (including GuardDuty, Security Hub, Trusted Advisor, and Detective) and incident response procedures, emphasizing both manual and automated approaches to handling security incidents. It covers the incident response life cycle, common security scenarios, and best practices for creating and implementing response plans while leveraging AWS services and automation capabilities to detect and remediate security issues effectively.
  • Appendix A: Answers to Review Questions  This appendix provides the answers to the review questions that appear at the end of each chapter throughout the book.
  • Appendix B: Creating Your Security Journey in AWS  This appendix discusses how to create your strategy to improve your security posture, consistently prioritizing the most important initiatives that can provide you security benefits, such as mitigating critical risks as soon as possible, thus optimizing your team’s results.
  • Appendix C: AWS Security Services Portfolio  This appendix provides an overview of the 24 AWS cloud services dedicated to security, identity, and compliance.
  • Appendix D: DevSecOps in AWS  This appendix introduces DevSecOps, the AWS family of services that implement DevOps practices, and how security controls can be implemented in an automated pipeline.

How to Contact the Publisher


If you believe you’ve found a mistake in this book, please bring it to our attention. At John Wiley & Sons, we understand how important it is to provide our customers with accurate content, but even with our best efforts, an error may occur.

In order to submit your possible errata, please email it to our Customer Service Team at wileysupport@wiley.com with the subject line “Possible Book Errata Submission.”

Interactive Online Learning Environment and Test Bank


Studying the material in the AWS Certified Security Study Guide: Specialty (SCS-C02) Exam is an important part of preparing for the AWS Certified Security Specialty (SCS-C02) certification exam, but we provide additional tools to help you prepare. The online test bank will help you understand the types of questions that will appear on the certification exam. The online test bank runs on multiple devices.

Sample Tests: The sample tests in the test bank include all the questions at the end of each chapter as well as the questions from the assessment test. In addition, there are two practice exams with 50 questions each. You can use these tests to evaluate your understanding and identify areas that may require additional study.

Flashcards: The flashcards in the test bank will push the limits of what you should know for the certification exam. There are 100 questions provided in digital format. Each flashcard has one question and one correct answer.

Glossary: The online glossary is a searchable list of key terms introduced in this exam guide that you should know for the AWS Certified Security Specialty (SCS-C02) certification exam.

Go to www.wiley.com/go/sybextestprep to register and gain access to this interactive online learning environment and test bank with study tools. To start using these tools to study for the AWS Certified Security Specialty (SCS-C02) exam, go to www.wiley.com/go/sybextestprep to register your book and receive your unique PIN. Once you have the PIN, return to www.wiley.com/go/sybextestprep, find your book, and click register or login and follow the link to register a new account or add this book to an...

Erscheint lt. Verlag 21.7.2025
Reihe/Serie Sybex Study Guide
Sprache englisch
Themenwelt Mathematik / Informatik Informatik
Sozialwissenschaften Pädagogik
Schlagworte aws certified security exam questions • aws certified security practice • aws certified security practice tests • aws certified security test • Scs-c02 exam • scs-c02 practice • scs-c02 practice questions • scs-c02 practice tests • scs-c02 test
ISBN-10 1-394-25347-8 / 1394253478
ISBN-13 978-1-394-25347-0 / 9781394253470
Informationen gemäß Produktsicherheitsverordnung (GPSR)
Haben Sie eine Frage zum Produkt?
EPUBEPUB (Adobe DRM)

Kopierschutz: Adobe-DRM
Adobe-DRM ist ein Kopierschutz, der das eBook vor Mißbrauch schützen soll. Dabei wird das eBook bereits beim Download auf Ihre persönliche Adobe-ID autorisiert. Lesen können Sie das eBook dann nur auf den Geräten, welche ebenfalls auf Ihre Adobe-ID registriert sind.
Details zum Adobe-DRM

Dateiformat: EPUB (Electronic Publication)
EPUB ist ein offener Standard für eBooks und eignet sich besonders zur Darstellung von Belle­tristik und Sach­büchern. Der Fließ­text wird dynamisch an die Display- und Schrift­größe ange­passt. Auch für mobile Lese­geräte ist EPUB daher gut geeignet.

Systemvoraussetzungen:
PC/Mac: Mit einem PC oder Mac können Sie dieses eBook lesen. Sie benötigen eine Adobe-ID und die Software Adobe Digital Editions (kostenlos). Von der Benutzung der OverDrive Media Console raten wir Ihnen ab. Erfahrungsgemäß treten hier gehäuft Probleme mit dem Adobe DRM auf.
eReader: Dieses eBook kann mit (fast) allen eBook-Readern gelesen werden. Mit dem amazon-Kindle ist es aber nicht kompatibel.
Smartphone/Tablet: Egal ob Apple oder Android, dieses eBook können Sie lesen. Sie benötigen eine Adobe-ID sowie eine kostenlose App.
Geräteliste und zusätzliche Hinweise

Buying eBooks from abroad
For tax law reasons we can sell eBooks just within Germany and Switzerland. Regrettably we cannot fulfill eBook-orders from other countries.

Mehr entdecken
aus dem Bereich

von Herbert Voß

eBook Download (2025)
Lehmanns Media (Verlag)
CHF 19,50
Management der Informationssicherheit und Vorbereitung auf die …

von Michael Brenner; Nils gentschen Felde; Wolfgang Hommel …

eBook Download (2024)
Carl Hanser Fachbuchverlag
CHF 68,35