Security, Identity & Compliance
Encrypting data with KMS, managing customer identities with Cognito, protecting web applications with WAF and Shield, and governing multi-account environments with Organizations.
AWS KMS & Encryption
intermediate~2hProAWS's managed key management service — how encryption keys are created, controlled, and used across AWS services without you handling raw key material yourself.
Amazon Cognito
intermediate~2hProManaged user authentication and identity for your applications — sign-up, sign-in, and temporary AWS credentials for end users, without building auth infrastructure yourself.
AWS WAF & Shield
intermediate~1.5hProFiltering malicious web requests before they reach your application, and protecting against DDoS attacks at the network and application layers.
AWS Organizations & Service Control Policies
advanced~2hProManaging many AWS accounts as one organization — centralized billing, and Service Control Policies that set permission guardrails no IAM policy within a member account can override.
ACM, STS & CloudHSM
advanced~2hProThree security services that round out the AWS security toolkit: ACM for managed TLS certificates, STS for temporary credential vending, and CloudHSM for dedicated, single-tenant hardware security modules.