Recognize and implement secure procedures for optimum cloud deployment and maintenance. Content may include the following:
- Cloud security best practices
Demonstrate the ability to implement the right architecture for development, testing, and staging environments. Content may include the following:
- Shared security responsibility model
- AWS platform compliance
- AWS security attributes (customer workloads down to physical layer)
- Security services
- AWS Identity and Access Management (IAM)
- Amazon Virtual Private Cloud (VPC)
- CIA and AAA models, ingress versus egress filtering, and which AWS services and features fit