Skip to main content
Course

AWS Certified Security, Specialty Exam Prep

Master all six SCS-C02 domains and walk into the exam ready to reason through real AWS security scenarios.

Intermediate

Level

7

Modules

23

Lessons

7

Graded quizzes

8 hours

Estimated time

What you will be able to do

  • You will be able to design threat detection and incident response workflows using GuardDuty, Detective, Security Hub, Inspector, and EventBridge automation.
  • You will be able to configure security logging and monitoring with CloudTrail, CloudWatch, VPC Flow Logs, AWS Config, and centralized log aggregation.
  • You will be able to secure network infrastructure using VPC controls, security groups, NACLs, WAF, Shield, Network Firewall, and edge protections.
  • You will be able to design IAM and federation solutions across policies, roles, permission boundaries, SCPs, and IAM Identity Center.
  • You will be able to protect data at rest and in transit using KMS, key policies, envelope encryption, ACM, S3 protections, and Secrets Manager.
  • You will be able to apply security governance with AWS Organizations, multi-account strategy, cost and compliance controls, and the shared responsibility model.
  • You will be able to interpret exam-style scenario questions and identify the BEST or MOST appropriate AWS solution under time pressure.
  • You will be able to self-assess readiness for the SCS-C02 exam across all six weighted domains.

What is inside

7 modules, 23 lessons. Each module ends in a graded quiz.

  1. 01

    Threat Detection & Incident Response

    Covers the AWS Certified Security, Specialty (SCS-C02) Threat Detection & Incident Response domain (about 14% of the exam), spanning 1.1, 1.2, 1.3. Each objective is taught as its own lesson with worked examples and exam-style checks.

    3 lessons · 15 quiz questions

  2. 02

    Security Logging & Monitoring

    Covers the AWS Certified Security, Specialty (SCS-C02) Security Logging & Monitoring domain (about 18% of the exam), spanning 2.1, 2.2, 2.3, 2.4, 2.5. Each objective is taught as its own lesson with worked examples and exam-style checks.

    5 lessons · 15 quiz questions

  3. 03

    Infrastructure Security

    Covers the AWS Certified Security, Specialty (SCS-C02) Infrastructure Security domain (about 20% of the exam), spanning 3.1, 3.2, 3.3, 3.4. Each objective is taught as its own lesson with worked examples and exam-style checks.

    4 lessons · 15 quiz questions

  4. 04

    Identity & Access Management

    Covers the AWS Certified Security, Specialty (SCS-C02) Identity & Access Management domain (about 16% of the exam), spanning 4.1, 4.2. Each objective is taught as its own lesson with worked examples and exam-style checks.

    2 lessons · 15 quiz questions

  5. 05

    Data Protection

    Covers the AWS Certified Security, Specialty (SCS-C02) Data Protection domain (about 18% of the exam), spanning 5.1, 5.2, 5.3, 5.4. Each objective is taught as its own lesson with worked examples and exam-style checks.

    4 lessons · 15 quiz questions

  6. 06

    Management & Security Governance

    Covers the AWS Certified Security, Specialty (SCS-C02) Management & Security Governance domain (about 14% of the exam), spanning 6.1, 6.2, 6.3, 6.4. Each objective is taught as its own lesson with worked examples and exam-style checks.

    4 lessons · 15 quiz questions

  7. 07

    Exam Readiness & Practice Exam

    Pulls the whole exam together: an exam-day strategy and key-term glossary, then a timed, domain-weighted practice exam written in the real exam style.

    1 lessons · 50 quiz questions