Complete SAA-C03 study guide — secure architectures, resilient design, high performance, and cost optimization on AWS.
This guide works best as a loop: read a chapter, test yourself with practice questions, look up unfamiliar terms in the glossary, then move to the next chapter.
189 chapters covering every exam objective. Each chapter includes key concepts, exam tips, common traps, comparison tables, and a 5-question quiz at the end.
Start Chapter 1Free timed and untimed practice with instant feedback and full explanations. Pick 10–120 questions per session. Filter by domain to drill your weak areas.
Go to practice testEvery SAA-C03term defined and searchable. Use it when a chapter mentions a concept you haven't seen before or want a quick refresher on.
Browse glossaryExam blueprint, domain weights, passing score, duration, cost, and registration links. Start here if you're new to this certification.
View exam guide29 chapters
Serverless Architecture for Cost Savings
Objective 4.3 · Cost Optimized
EC2 Pricing: On-Demand, Reserved, Spot
Objective 4.1 · Cost Optimized
S3 Storage Classes and Lifecycle
Objective 4.2 · Cost Optimized
AWS Cost Explorer and Budgets
Objective 4.4 · Cost Optimized
Rightsizing and Trusted Advisor
Objective 4.5 · Cost Optimized
Compute and EC2 Savings Plans
Objective 4.1
Spot Instance Interruption Notices and Handling
Objective 4.1
EC2 Hibernation
Objective 4.1
Standard vs Convertible Reserved Instances
Objective 4.1
On-Demand Capacity Reservations
Objective 4.1
Fargate Spot for Cost Savings
Objective 4.3
Aurora Serverless v2 Cost vs Provisioned
Objective 4.4
DynamoDB On-Demand vs Provisioned Cost
Objective 4.4
S3 Intelligent-Tiering for Automated Cost Optimization
Objective 4.2
Glacier Retrieval Options and Costs
Objective 4.2
AWS Data Transfer Costs: Same AZ, Cross-AZ, Internet
Objective 4.4
VPC Gateway Endpoints for S3/DynamoDB (Free vs NAT)
Objective 4.4
NAT Gateway vs NAT Instance Cost
Objective 4.4
Lambda Cost: ARM vs x86, Memory Tuning
Objective 4.3
Cost Allocation Tags for Chargeback
Objective 4.4
AWS Budgets Actions
Objective 4.4
AWS Compute Optimizer
Objective 4.5
Cost Anomaly Detection
Objective 4.4
CloudFront Pricing Tiers and Price Classes
Objective 4.4
CloudWatch Cost: Logs Ingestion and Custom Metrics
Objective 4.4
Step Functions Express vs Standard Workflows Cost
Objective 4.3
AWS Organizations Consolidated Billing
Objective 4.4
ElastiCache Reserved Nodes
Objective 4.4
Redshift Reserved Nodes and Concurrency Scaling
Objective 4.4
47 chapters
AWS Network Firewall
Objective 1.3 · Secure Architectures
Amazon Macie for S3 Data Discovery
Objective 1.4 · Secure Architectures
AWS KMS and Encryption Strategies
Objective 1.2 · Secure Architectures
AWS WAF and Shield
Objective 1.3
AWS IAM Advanced: Roles, Policies, STS
Objective 1.1 · Secure Architectures
VPC Security: Security Groups, NACLs, Flow Logs
Objective 1.1
Secrets Manager vs Parameter Store
Objective 1.2
Service Control Policies and AWS Organizations
Objective 1.4
S3 Security: Bucket Policies, ACLs, Encryption
Objective 1.5 · Secure Architectures
IAM Policy Types: Identity, Resource, Permission Boundary, SCP
Objective 1.1
IAM Cross-Account Role Assumptions
Objective 1.1
IAM Permission Boundaries
Objective 1.1
AWS IAM Identity Center (SSO) and SAML Federation
Objective 1.1
AWS Directory Service: AD Connector vs Managed AD
Objective 1.1
Amazon Cognito User Pools and Identity Pools
Objective 1.1
STS: AssumeRole, GetSessionToken, and Web Identity
Objective 1.1
Cross-Account S3 Access Patterns
Objective 1.5
S3 Pre-Signed URLs and Access Points
Objective 1.5
S3 Bucket Policies vs ACLs
Objective 1.5
S3 Encryption: SSE-S3, SSE-KMS, SSE-C, Client-Side
Objective 1.2
S3 Object Lock and WORM Compliance
Objective 1.5
KMS Key Policies and Grants
Objective 1.2
Customer Managed Keys vs AWS Managed Keys vs Customer Provided
Objective 1.2
AWS CloudHSM vs AWS KMS
Objective 1.2
Secrets Manager Automatic Rotation
Objective 1.2
Parameter Store Advanced Tiers and SecureString
Objective 1.2
AWS Certificate Manager (ACM)
Objective 1.3
AWS Shield Advanced
Objective 1.3
AWS WAF Rule Groups and Managed Rules
Objective 1.3
AWS Firewall Manager
Objective 1.3
VPC Endpoints: Gateway vs Interface vs GWLB
Objective 1.1
AWS PrivateLink for SaaS Services
Objective 1.1
AWS Transit Gateway
Objective 1.1
VPC Flow Logs for Security Analysis
Objective 1.1
NACLs vs Security Groups: Deep Dive
Objective 1.1
VPC Network Access Analyzer
Objective 1.1
CloudTrail Advanced: Multi-Region, Integrity, Organization Trail
Objective 1.4
AWS Config Rules and Conformance Packs
Objective 1.4
AWS Security Hub
Objective 1.4
Amazon GuardDuty
Objective 1.4
Amazon Inspector v2
Objective 1.4
Amazon Detective
Objective 1.4
AWS Resource Access Manager (RAM)
Objective 1.4
AWS Organizations: OUs, SCPs, and Hierarchy
Objective 1.4
AWS Control Tower and Landing Zone
Objective 1.4
AWS Audit Manager
Objective 1.4
ECR Image Scanning and Lifecycle Policies
Objective 1.5
56 chapters
EC2 Placement Groups: Cluster, Spread, Partition
Objective 2.1 · Resilient Architectures
RDS Cost Optimization: Multi-AZ vs Snapshot Restore
Objective 2.3 · Resilient Architectures
Multi-Site Active-Active DR on AWS
Objective 2.6 · Resilient Architectures
EC2 Instance Types and Placement Groups
Objective 2.1
Auto Scaling Groups
Objective 2.1
Elastic Load Balancing Types
Objective 2.2 · Resilient Architectures
RDS and Aurora: Multi-AZ and Read Replicas
Objective 2.3
S3 Cross-Region and Same-Region Replication
Objective 2.4 · Resilient Architectures
Route 53 Routing Policies
Objective 2.5 · Resilient Architectures
AWS Global Accelerator vs CloudFront
Objective 2.5
Disaster Recovery Strategies on AWS
Objective 2.6
EC2 Instance Type Families and Use Cases
Objective 2.1
Spot Fleet Strategies: Lowest Price, Diversified, Capacity Optimized
Objective 2.1
ASG Lifecycle Hooks
Objective 2.1
ASG Scheduled and Predictive Scaling
Objective 2.1
ASG Termination Policies
Objective 2.1
EC2 Target Tracking Scaling
Objective 2.1
ALB: Path-Based, Host-Based, and Header Routing
Objective 2.2
NLB: Static IPs, TLS Termination, Ultra-Low Latency
Objective 2.2
Gateway Load Balancer (GWLB) for Inline Security
Objective 2.2
ALB Sticky Sessions and Connection Draining
Objective 2.2
RDS Read Replicas: Cross-Region and Promotion
Objective 2.3
RDS Multi-AZ: Synchronous Replication and Failover
Objective 2.3
Amazon RDS Proxy
Objective 2.3
RDS Blue/Green Deployments
Objective 2.3
Aurora Global Database
Objective 2.3
Aurora Serverless v2 Scaling
Objective 2.3
Aurora Backtrack and Database Cloning
Objective 2.3
Aurora Auto-Scaling Read Replicas
Objective 2.3
DynamoDB Streams and Event Processing
Objective 2.3
DynamoDB Global Tables
Objective 2.3
DynamoDB Transactions
Objective 2.3
DynamoDB Point-in-Time Recovery
Objective 2.3
S3 Versioning and MFA Delete
Objective 2.4
CloudFront Origin Groups and Failover
Objective 2.5
CloudFront Signed URLs and Signed Cookies
Objective 2.5
Route 53 Health Checks and DNS Failover
Objective 2.5
Route 53 Private Hosted Zones
Objective 2.5
Route 53 Resolver Endpoints for Hybrid DNS
Objective 2.5
Global Accelerator vs CloudFront: When to Use Each
Objective 2.5
Pilot Light DR Pattern on AWS
Objective 2.6
Warm Standby DR Pattern on AWS
Objective 2.6
AWS Backup Service
Objective 2.6
AWS Resilience Hub
Objective 2.6
ECS Fargate: Task Placement and Availability
Objective 2.1
EKS Multi-AZ Node Groups
Objective 2.1
Lambda Destinations and Dead Letter Queues
Objective 2.1
Lambda Concurrency: Reserved and Provisioned
Objective 2.1
SQS Dead Letter Queues
Objective 2.1
SQS Message Visibility Timeout
Objective 2.1
SQS Long Polling vs Short Polling
Objective 2.1
EventBridge Rules, Event Buses, and Replay
Objective 2.1
Step Functions Error Handling and Retries
Objective 2.1
ElastiCache Redis Cluster Mode and Replication
Objective 2.3
EFS Multi-AZ Mount Targets
Objective 2.1
EC2 Launch Templates
Objective 2.1
57 chapters
SNS Message Filtering and Fan-Out Pattern
Objective 3.2 · High Performance
FSx for Windows File Server
Objective 3.5 · High Performance
Amazon ElastiCache: Redis vs Memcached
Objective 3.1 · High Performance
SQS vs SNS vs Kinesis
Objective 3.2
Lambda Architecture Patterns
Objective 3.3 · High Performance
CloudFront Distribution Design
Objective 3.4 · High Performance
EFS vs FSx for Storage
Objective 3.5
DynamoDB Design Patterns
Objective 3.6 · High Performance
API Gateway Integration Patterns
Objective 3.7 · High Performance
EC2 Enhanced Networking and SR-IOV
Objective 3.1
AWS Graviton Processors
Objective 3.1
EC2 Instance Store Volumes
Objective 3.1
EBS Performance: IOPS, Throughput, io2 Block Express
Objective 3.1
EBS Multi-Attach for io1/io2
Objective 3.1
ECS Task Definitions and Container Definitions
Objective 3.3
ECS Service Discovery and AWS Service Connect
Objective 3.3
EKS Networking: AWS VPC CNI Plugin
Objective 3.3
Lambda Performance: Memory, Cold Starts, and Init Duration
Objective 3.3
Lambda Layers and Container Images
Objective 3.3
Lambda@Edge vs CloudFront Functions
Objective 3.4
API Gateway: REST vs HTTP vs WebSocket
Objective 3.7
API Gateway Caching and Throttling
Objective 3.7
API Gateway Lambda Authorizers and JWT Authorizers
Objective 3.7
API Gateway VPC Link
Objective 3.7
AWS AppSync for GraphQL APIs
Objective 3.7
DynamoDB Capacity: On-Demand vs Provisioned
Objective 3.6
DynamoDB GSI and LSI
Objective 3.6
DynamoDB Partition Key Design Patterns
Objective 3.6
DynamoDB PartiQL
Objective 3.6
DynamoDB Accelerator (DAX)
Objective 3.6
S3 Performance: Multi-Part Upload and Transfer Acceleration
Objective 3.4
S3 Select and Glacier Select
Objective 3.4
S3 Batch Operations
Objective 3.4
CloudFront Cache Behaviors and TTL
Objective 3.4
CloudFront Functions for Edge Logic
Objective 3.4
Kinesis Data Streams: Shards and Consumers
Objective 3.2
Kinesis Data Firehose Delivery Streams
Objective 3.2
Kinesis Data Analytics (Managed Apache Flink)
Objective 3.2
SQS FIFO Queues and Deduplication
Objective 3.2
Amazon MSK for Apache Kafka
Objective 3.2
ElastiCache Redis vs Memcached Use Cases
Objective 3.1
Amazon Redshift for Data Warehousing
Objective 3.1
Redshift Spectrum for S3 Queries
Objective 3.1
Amazon Athena Query Optimization
Objective 3.1
AWS Glue for ETL
Objective 3.1
Amazon EMR for Big Data Processing
Objective 3.1
Amazon OpenSearch Service
Objective 3.1
AWS DataSync for Data Transfer
Objective 3.5
AWS Storage Gateway: File, Volume, Tape
Objective 3.5
AWS Transfer Family (SFTP/FTP/FTPS)
Objective 3.5
FSx for Lustre for HPC
Objective 3.5
FSx for NetApp ONTAP
Objective 3.5
EFS Performance Modes and Throughput Modes
Objective 3.5
Aurora Machine Learning Integration
Objective 3.6
RDS Performance Insights
Objective 3.6
AWS Wavelength and Local Zones
Objective 3.1
Elastic Fabric Adapter (EFA) for HPC
Objective 3.1
Free SAA-C03 practice questions with full explanations. Test what you learn chapter by chapter.
SAA-C03 Practice Questions