← AWS Certified DevOps Engineer - Professional
AWS · objective · 17% of the exam
Security and Compliance — AWS Certified DevOps Engineer - Professional
The official AWS documentation our Security and Compliance practice questions are cited to. Review the primary sources, then practise.
Official references for this objective
-
Amazon Web Services — Security best practices in IAM - AWS Identity and Access Management
Workloads that run outside of AWS, such as your on-premises servers, servers from other cloud providers, or managed continuous integration and continuous delivery (CI/CD) platforms,
-
Amazon Web Services — Compliance FAQ - Amazon Web Services (AWS)
AWS Artifact is your go-to, central resource for compliance-related information that matters to you.
-
Amazon Web Services — AWS risk and compliance program - Amazon Web Services: Risk and Compliance
AWS Artifact is a no cost self-service portal for on-demand access to AWS compliance reports.
-
Amazon Web Services — Encrypting Data-at-Rest and Data-in-Transit - Logical Separation on AWS
Because access to encrypt or decrypt the data within the service is independently controlled by AWS KMS policies under the customer’s control, customers
-
Amazon Web Services — Identity and access management - AWS Well-Architected Framework
credentials to sign programmatic requests to the AWS CLI, AWS SDKs, or AWS APIs
-
Amazon Web Services — AWS Shield - AWS WAF, AWS Firewall Manager, AWS Shield Advanced, and AWS Shield network security director
you receive automatic protection by AWS against common volumetric DDoS attack vectors, like UDP reflection attacks and TCP SYN floods
-
Amazon Web Services — Amazon GuardDuty Documentation
GuardDuty combines machine learning (ML), anomaly detection, and malicious file discovery, using both AWS and third-party sources to help protect workloads and data.
-
Amazon Web Services — Setting up AWS Shield Advanced - AWS WAF, AWS Firewall Manager, AWS Shield Advanced, and AWS Shield network security director
Shield Advanced requires a subscription, while AWS Shield Standard does not. The protections provided by Shield Standard are available free of charge to all AWS
-
Amazon Web Services — Understanding the security scope - AWS Prescriptive Guidance
As the infrastructure becomes more abstracted and modernized, the footprint becomes smaller. Your scope shrinks because responsibility for some security elements shifts to AWS.
-
Amazon Web Services — Using AWS KMS encryption with AWS services - AWS Key Management Service
AWS services that are integrated with AWS KMS use only symmetric encryption KMS keys to encrypt your data.
-
Amazon Web Services — What is AWS Artifact? - AWS Artifact
AWS provides AWS Artifact documents and agreements to you free of charge.