inflearn logo

CloudNet@ - AWS Security Guide Part 1

Understand the security settings of major AWS services through architectural diagrams, and gain hands-on experience with their operating principles through practical exercises and security scenarios.

13 learners are taking this course

Level Basic

Course period Unlimited

AWS
AWS
aws-iam
aws-iam
cloud-security
cloud-security
devsecops
devsecops
cloud-computing
cloud-computing
AWS
AWS
aws-iam
aws-iam
cloud-security
cloud-security
devsecops
devsecops
cloud-computing
cloud-computing

What you will gain after the course

  • Understanding the security architecture and operating principles of key AWS services

  • An experience of connecting theory and practice to directly check and verify security configuration results

  • The ability to verify actual operational flows through security scenario-based hands-on exercises

Practical Guide to AWS Security Learned Through Hands-on Practice


Through this course, you can understand how to design and configure security in an AWS environment based on hands-on practice.

Visually understand the security architecture by utilizing both diagrams and practice screens.

Verify the flow of detecting security events and monitoring the results through hands-on practice

✅ Hands-on practice to directly configure and solve problems based on security scenarios

<Understanding Security Architecture through Diagrams>

<Monitoring Security Detection Results>

<Verification of Operations Based on Security Scenarios>


👀 What you will learn


Section (1) Course Introduction

We introduce the CloudNet@ team, the course objectives, and the overall flow.
We summarize the curriculum for each section along with the learning methods at a glance.

thoughtful <Lecture Introduction Table of Contents>

Section (2) [Hands-on] Prerequisites [Thực hành] Chuẩn bị trước

Set up the basic environment for the hands-on practice.
Prepare the WSL2, Terraform, Slack, and IAM environments.

<Introduction to Terraform>

Section (3) Introduction to AWS Security

We introduce AWS security tools in accordance with the shift in the security paradigm.
Understand security operation methods based on DevSecOps.

<AWS Security Tools>

Section (4) Introduction to AWS IAM

Explains the basics and best practices of AWS IAM.
Examines cases of account-related vulnerabilities.

<IAM Roles Diagram>

Section (5) [Practice] Configuring AWS IAM Security Access

Check the components of AWS IAM through hands-on practice.
Practice IAM security vulnerability detection and event notifications.

<IMDSv1 Vulnerability>

Section (6) [Hands-on] Centralized IAM Management using ConsoleMe

Configure a centralized IAM management environment with ConsoleMe.
Practice scenarios for IAM permission requests and approvals through this.

<ConsoleMe OIDC Authentication Configuration>

Section (7) Amazon VPC Security Configuration

Understand access control and traffic regulation for VPC security.
Explore VPC network isolation and best practices.

<Introduction to VPC Security>

Section (8) [Hands-on] Amazon VPC Security Configuration

Verify VPC traffic control and its results.
Practice private communication flows with security in mind.

<VPC FlowLogs Configuration>

Section (9) Amazon S3 Vulnerabilities and Security Configuration

Understand access control for Amazon S3 security.
Learn about vulnerability types and security configuration methods.

<S3 Access Control Methods>

Section (10) [Hands-on] Amazon S3 Security Configuration

Practice Amazon S3 access control and security detection.
Practice data protection, auditing, and logging analysis.

<IAM Policy and Bucket Policy>


👾 Notes before taking the course


Step by Step

👉 Since the structure involves hands-on practice after theoretical explanations, please listen to the lectures sequentially.

Ensure sufficient time for the hands-on practice

👉 When proceeding with the practice, we recommend completing it all at once from start to finish.
👉
Please allow yourself about 1.5 times more time than the estimated duration to proceed.


Small amount of charges may occur

👉 Except for those eligible for the new Free Tier, this lecture will incur small charges through the hands-on practice.
👉
The cost is expected to be around 10,000 KRW, and it may vary depending on your practice patterns or duration.


Don't forget to clean up the practice resources...

👉 After the practice is finished, a cleanup guide to delete the created resources is always provided at the end.
👉 Please always be careful to avoid unnecessary charges.

Learning Materials

  • Provision of Terraform resource deployment code

    • Execute Terraform resource deployment command ⇒ Create basic infrastructure for practice

    • Execute Terraform resource deletion command ⇒ Delete basic infrastructure for practice

    • We will explain how to download the code during the course.



  • Lecture materials provided in PDF

    • Basically, a PDF file for the lecture progress is provided.

Prerequisite Knowledge and Precautions

  • Basic understanding of AWS services


  • Basic understanding of Linux shell commands

  • This lecture is Part 1, and a Part 2 lecture is also being planned.

<Part 2 Curriculum Plan>

※ Related Keywords: AWS, aws-iam, cloud-security, cloud-computing, devsecops

Recommended for
these people

Who is this course right for?

  • New security personnel who are familiar with security policies but want to properly understand their construction principles and structure.

  • Developers and operations personnel who need to collaborate with security officers and understand the security architecture together.

  • Beginners or learners who want to understand the AWS security environment by experiencing it firsthand through hands-on practice.

Need to know before starting?

  • Basic knowledge of core AWS services (EC2, S3, VPC)

  • Understanding basic Linux commands and fundamental network concepts

  • A simple resource creation experience in a cloud environment

Hello
This is ongja

1,391

Learners

127

Reviews

107

Answers

4.9

Rating

4

Courses

Hello. I am Ongja, a member of the CloudNet@ team.

Our CloudNet@ team is a study group that learns and shares knowledge about cloud-related technologies.

I have been actively sharing knowledge through various cloud-related online study groups, book writing, and lecture content creation.

We look forward to seeing you again with video lecture content on various topics. :)

Personal Blog -> https://ongja.space

Team Blog -> http://blog.cloudneta.net

More

Curriculum

All

56 lectures ∙ (10hr 12min)

Course Materials:

Lecture resources
Published: 
Last updated: 

Reviews

Not enough reviews.
Please write a valuable review that helps everyone!

Similar courses

Explore other courses in the same field!

Limited time deal

$41.80

38%

$68.20