Introduction To Security and Architecture - Guided Notes - Completed
Introduction To Security and Architecture - Guided Notes - Completed
Guided Notes
I am excited that you are on the journey to get your AWS Certified Cloud Practitioner
certification. This guided outline is meant to complement the video course. Here are a few
tips to help you get the most out of these resources:
Remember, this course is just the first step in your journey to achieve this certification. Follow
along with the remainder of courses in this path, and then register for the exam.
Don’t forget to reach out on Twitter and LinkedIn to let me know how you are doing along
the way.
1
AWS Architecture Core Concepts
Learning Outcomes
Helpful Links
unacceptable uses of their cloud platform. All users must agree with this policy to have an
2
Shared Responsibility Model
Security Compliance
“____________________________ and _____________________________ is a shared responsibility
Global data centers and underlying network Data security and encryption
(both in transit and at rest)
Operational Excellence
1. ___________________________________ - Running and monitoring systems for business
value
2. Security
___________________________________ - Protecting information and business assets
Reliability
3. ___________________________________ - Enabling infrastructure to recover from
3
disruptions
Performance Efficiency
4. ___________________________________ - Using resources efficiently to achieve business
value
5. Cost Optimization
___________________________________ - Achieving minimal costs for the desired value
2. Route 53
__________________________________
Compliance
1. AWS Config
_______________________________ - Continually monitor AWS resources and provides
2. AWS Artifact
_______________________________ - Portal that provides self-service access to compliance
reports
3. Amazon GuardDuty
_______________________________ - Provides intelligent threat detection
4
Scenarios
The following scenarios are presented in the course as a way to explore your understanding of
the module. Include your answer here in this outline, as well as your notes on the solution to
each scenario.
SCENARIO 1
AWS Artifact
What’s Your Answer: _____________________________________________________________
If you didn’t get this one right, what insight did you gain from the explanation:
SCENARIO 2
5
Why did you pick this answer:
If you didn’t get this one right, what insight did you gain from the explanation:
SCENARIO 3
If you didn’t get this one right, what insight did you gain from the explanation:
Module Wrap Up
Take a minute to write down any areas from this module that you don’t fully understand or
where you still have questions:
6
AWS Identities and User Management
Learning Outcomes
Helpful Links
Summary
access AWS resources, you should grant them the minimum permissions needed to
7
Users Groups Roles
Amazon Cognito
1. Google
2. Amazon
3. Facebook
8
Scenarios
The following scenarios are presented in the course as a way to explore your understanding of
the module. Include your answer here in this outline, as well as your notes on the solution to
each scenario.
SCENARIO 1
If you didn’t get this one right, what insight did you gain from the explanation:
SCENARIO 2
9
Why did you pick this answer:
If you didn’t get this one right, what insight did you gain from the explanation:
SCENARIO 3
If you didn’t get this one right, what insight did you gain from the explanation:
Module Wrap Up
Take a minute to write down any areas from this module that you don’t fully understand or
where you still have questions:
10
Data Architecture on AWS
Learning Outcomes
Please enter the name and brief definition of each volume type for AWS Storage Gateway:
11
AWS DataSync
_______________________________________________ - Automated data transfer service that uses
Processing Data
1. Apache Spark
2. Apache Hive
3. Apache HBase
4. Apache Flink
5. Apache Hudi
6. Presto
12
Amazon S3
AWS Data Pipeline integrates with ___________________________,
Amazon EMR Amazon Redshift Amazon DynamoDB
_______________________________, ______________________________, ______________________________,
Amazon RDS
and ___________________________.
Analyzing Data
13
Scenarios
The following scenarios are presented in the course as a way to explore your understanding of
the module. Include your answer here in this outline, as well as your notes on the solution to
each scenario.
SCENARIO 1
AWS Glue
What’s Your Answer: _____________________________________________________________
If you didn’t get this one right, what insight did you gain from the explanation:
SCENARIO 2
Amazon Rekognition
What’s Your Answer: _____________________________________________________________
14
Why did you pick this answer:
If you didn’t get this one right, what insight did you gain from the explanation:
SCENARIO 3
Amazon Quicksight
What’s Your Answer: _____________________________________________________________
If you didn’t get this one right, what insight did you gain from the explanation:
Module Wrap Up
Take a minute to write down any areas from this module that you don’t fully understand or
where you still have questions:
15
Disaster Recovery on AWS
Learning Outcomes
■ Understand the four different recommended architectures for disaster recovery (DR)
○ Backup and Restore
○ Pilot Light
○ Warm Standby
○ Multi-site
■ Be able to determine which approach makes sense for an organization based on RTO
and RPO
Recovery Point
Objective (RPO)
__________________________ - The amount of data loss (in terms of time) for a production
16
Scenarios
The following scenarios are presented in the course as a way to explore your understanding of
the module. Include your answer here in this outline, as well as your notes on the solution to
each scenario.
SCENARIO 1
Multi-site
What’s Your Answer: _____________________________________________________________
If you didn’t get this one right, what insight did you gain from the explanation:
SCENARIO 2
17
Why did you pick this answer:
If you didn’t get this one right, what insight did you gain from the explanation:
SCENARIO 3
Pilot Light
What’s Your Answer: _____________________________________________________________
If you didn’t get this one right, what insight did you gain from the explanation:
Module Wrap Up
Take a minute to write down any areas from this module that you don’t fully understand or
where you still have questions:
18
Architecting Applications on Amazon EC2
Learning Outcomes
■ Scaling EC2
○ Understand the difference between horizontal and vertical scaling
○ Explain services that support scaling
■ Auto-scaling groups
■ Elastic Load Balancing
■ Limiting Access to EC2 Instances
○ Understand the different approaches for controlling access
■ Security Groups
■ ACL’s
■ AWS VPN
■ Know the AWS services that provide protection from hacks and attacks
○ AWS Shield
○ Amazon Macie
○ Amazon Inspector
■ Understand the different ways to launch pre-existing experiences on EC2
○ AWS Service Catalog
○ AWS Marketplace
■ Be able to define the different services in the suite of developer tools on AWS
○ AWS CodeCommit
○ AWS CodeBuild
○ AWS CodeDeploy
○ AWS CodePipeline
○ AWS CodeStar
Vertical Scaling
_____________________________________ - You “scale up” your instance type to a larger instance
Horizontal Scaling
_____________________________________ - You “scale out” and add additional instances to handle
19
Fill in the notes on Auto-scaling Groups for EC2:
passwords, keys, tokens, etc…) used in your custom applications on AWS. It also supports
Fill in the solutions for limiting access to EC2 instances based on the included descriptions:
Solution Description
Network Access Control Lists Controls inbound and outbound traffic for
(ACL’s) subnets within the VPC
20
Secure access to an entire VPC using an
AWS VPN
encrypted tunnel
Indicate which of the following are characteristics of Security Groups and which are Network ACL’s:
21
AWS Shield Amazon Macie Amazon Inspector
AWS Marketplace
___________________________________________ - Enables third-party ISV’s to offer configurations
Developer Tools
22
Fully managed build and continuous
AWS CodeBuild integration service on AWS
23
Scenarios
The following scenarios are presented in the course as a way to explore your understanding of
the module. Include your answer here in this outline, as well as your notes on the solution to
each scenario.
SCENARIO 1
If you didn’t get this one right, what insight did you gain from the explanation:
SCENARIO 2
24
Why did you pick this answer:
If you didn’t get this one right, what insight did you gain from the explanation:
SCENARIO 3
Amazon Macie
What’s Your Answer: _____________________________________________________________
If you didn’t get this one right, what insight did you gain from the explanation:
25
Module Wrap Up
Take a minute to write down any areas from this module that you don’t fully understand or
where you still have questions:
The Exam
Complete all of the courses in this path to prepare for your AWS Certified Cloud Practitioner
exam. Once you are ready, follow the links below to register for the exam:
Exam Links
Stay in Touch
If you have questions along the way, feel free to reach out to David Tucker on Twitter
(@_davidtucker_) or through his website. Also, feel free to connect on LinkedIn.
As a part of creating this course, the pages for each included service were referenced. For
additional information, follow the links in this document to each service.
26