Overview
Design enterprise-ready cloud security architectures across AWS, Azure, and Google Cloud. SEC549 takes you through a fictional enterprise's cloud migration journey, teaching threat modeling and secure architecture review through hands-on labs.
As an aspiring cloud security architect, you will perform threat models against existing cloud infrastructure, identify pros and cons of design patterns, and create architecture plans supporting enterprise acquisitions.
What You Will Learn:
Identity and Access Foundations
- Enable identity federation from Entra ID to AWS and GCP
- Design organizational hierarchies with policy guardrails
- Implement zero-trust conditional access policies
- Authenticate workloads across cloud providers using OIDC and certificates
Network Security Architecture
- Build hub-and-spoke networks with micro-segmentation
- Configure traffic inspection for ingress, egress, and east-west flows
- Manage firewall rules using AWS Firewall Manager and Azure Firewall Manager
- Design hybrid connectivity with VPN and dedicated connections
Data Protection Patterns
- Establish data perimeter policies and classification
- Implement attribute-based access control and data masking
- Design centralized key management architectures
- Plan disaster recovery and business continuity
Security Operations Enablement
- Aggregate logs within CSPs for SIEM export
- Design architectures supporting threat detection and incident response
- Export telemetry using Kinesis, Event Hub, and Pub/Sub
- Process data with Cribl and ingest into Microsoft Sentinel
35 labs across all major cloud providers. CloudWars capstone with team presentations. Prepares for GCAD certification. 30 CPEs across 5 days.
Highlights
- Design zero-trust architectures with identity federation, conditional access policies, hub-and-spoke networks, and centralized traffic inspection across AWS, Azure, and GCP
- 35 hands-on labs covering threat modeling, secure architecture reviews, identity federation, network segmentation, data protection, and SIEM integration
- Certification: Prepares for GCAD. For solutions architects and security professionals. 30 CPEs across 5 days.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Financing for AWS Marketplace purchases
Pricing
Dimension | Description | Cost/12 months |
|---|---|---|
SEC549 - Single User | Single user license for Cloud - SEC549: Cloud Security Architecture | $8,260.00 |
Vendor refund policy
Refund requests must be submitted by the deadline date specific to User's training event. To find the specific deadline date for User's training event, please go to training event link at <www.sans.org > and click on the cancellations link.
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
Software as a Service (SaaS)
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Support
Vendor support
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Similar products


