SAA-C03Exam Domain

Design Secure Architectures (30%)SAA-C03 Study Guide

47 chapters
~1175 min total
Free — no signup required

Design Secure Architectures (30%) Chapters

2

AWS Network Firewall

Objective 1.3 · Secure Architectures

25m
3

Amazon Macie for S3 Data Discovery

Objective 1.4 · Secure Architectures

25m
9

AWS KMS and Encryption Strategies

Objective 1.2 · Secure Architectures

25m
10

AWS WAF and Shield

Objective 1.3 · Secure Architectures

25m
11

AWS IAM Advanced: Roles, Policies, STS

Objective 1.1 · Secure Architectures

25m
12

VPC Security: Security Groups, NACLs, Flow Logs

Objective 1.1 · Secure Architectures

25m
13

Secrets Manager vs Parameter Store

Objective 1.2 · Secure Architectures

25m
14

Service Control Policies and AWS Organizations

Objective 1.4 · Secure Architectures

25m
15

S3 Security: Bucket Policies, ACLs, Encryption

Objective 1.5 · Secure Architectures

25m
35

IAM Policy Types: Identity, Resource, Permission Boundary, SCP

Objective 1.1 · Secure Architectures

25m
36

IAM Cross-Account Role Assumptions

Objective 1.1 · Secure Architectures

25m
37

IAM Permission Boundaries

Objective 1.1 · Secure Architectures

25m
38

AWS IAM Identity Center (SSO) and SAML Federation

Objective 1.1 · Secure Architectures

25m
39

AWS Directory Service: AD Connector vs Managed AD

Objective 1.1 · Secure Architectures

25m
40

Amazon Cognito User Pools and Identity Pools

Objective 1.1 · Secure Architectures

25m
41

STS: AssumeRole, GetSessionToken, and Web Identity

Objective 1.1 · Secure Architectures

25m
42

Cross-Account S3 Access Patterns

Objective 1.5 · Secure Architectures

25m
43

S3 Pre-Signed URLs and Access Points

Objective 1.5 · Secure Architectures

25m
44

S3 Bucket Policies vs ACLs

Objective 1.5 · Secure Architectures

25m
45

S3 Encryption: SSE-S3, SSE-KMS, SSE-C, Client-Side

Objective 1.2 · Secure Architectures

25m
46

S3 Object Lock and WORM Compliance

Objective 1.5 · Secure Architectures

25m
47

KMS Key Policies and Grants

Objective 1.2 · Secure Architectures

25m
48

Customer Managed Keys vs AWS Managed Keys vs Customer Provided

Objective 1.2 · Secure Architectures

25m
49

AWS CloudHSM vs AWS KMS

Objective 1.2 · Secure Architectures

25m
50

Secrets Manager Automatic Rotation

Objective 1.2 · Secure Architectures

25m
51

Parameter Store Advanced Tiers and SecureString

Objective 1.2 · Secure Architectures

25m
52

AWS Certificate Manager (ACM)

Objective 1.3 · Secure Architectures

25m
53

AWS Shield Advanced

Objective 1.3 · Secure Architectures

25m
54

AWS WAF Rule Groups and Managed Rules

Objective 1.3 · Secure Architectures

25m
55

AWS Firewall Manager

Objective 1.3 · Secure Architectures

25m
56

VPC Endpoints: Gateway vs Interface vs GWLB

Objective 1.1 · Secure Architectures

25m
57

AWS PrivateLink for SaaS Services

Objective 1.1 · Secure Architectures

25m
58

AWS Transit Gateway

Objective 1.1 · Secure Architectures

25m
59

VPC Flow Logs for Security Analysis

Objective 1.1 · Secure Architectures

25m
60

NACLs vs Security Groups: Deep Dive

Objective 1.1 · Secure Architectures

25m
61

VPC Network Access Analyzer

Objective 1.1 · Secure Architectures

25m
62

CloudTrail Advanced: Multi-Region, Integrity, Organization Trail

Objective 1.4 · Secure Architectures

25m
63

AWS Config Rules and Conformance Packs

Objective 1.4 · Secure Architectures

25m
64

AWS Security Hub

Objective 1.4 · Secure Architectures

25m
65

Amazon GuardDuty

Objective 1.4 · Secure Architectures

25m
66

Amazon Inspector v2

Objective 1.4 · Secure Architectures

25m
67

Amazon Detective

Objective 1.4 · Secure Architectures

25m
68

AWS Resource Access Manager (RAM)

Objective 1.4 · Secure Architectures

25m
69

AWS Organizations: OUs, SCPs, and Hierarchy

Objective 1.4 · Secure Architectures

25m
70

AWS Control Tower and Landing Zone

Objective 1.4 · Secure Architectures

25m
71

AWS Audit Manager

Objective 1.4 · Secure Architectures

25m
72

ECR Image Scanning and Lifecycle Policies

Objective 1.5 · Secure Architectures

25m

Other SAA-C03 Domains

Test your Design Secure Architectures (30%) knowledge

Free SAA-C03 practice questions with full explanations. Test what you learn chapter by chapter.

SAA-C03 Practice Questions