Searching CertSprout…
Searching CertSprout…
A little curiosity goes a long way
Search certifications, learning topics, career paths, public profiles and help across CertSprout.
Showing 20 results · Page 7 for “security”. More results are available below.
AWS-CLF · Security and Compliance
…nd evaluates them against rules, so you can see that a security group was changed to allow port 22 to the world and by which change. Amazon CloudWatch is the third sibling, collecting metric…
AWS-CLF · Security and Compliance
…in S3 buckets and alerts on risky bucket settings. AWS Security Hub aggregates findings from all three into one view.
AWS-CLF · Security and Compliance
AWS Shield protects against distributed denial of service attacks. Shield Standard is free and automatic for all customers, defending against common network and transport layer floods. Shiel…
AWS-CLF · Security and Compliance
A VPC has two firewalls. A security group attaches to an elastic network interface on an instance or service, supports allow rules only, and is stateful: if inbound traffic is allowed, the r…
AWS-SAA · Design Secure Architectures
A security group wraps a network interface and holds only allow rules. Because it is stateful, permitting inbound traffic automatically permits the matching response outbound. A network ACL …
AWS-SAA · Design Cost-Optimized Architectures
… Trusted Advisor runs checks across cost, performance, security and fault tolerance and points out idle load balancers, underused instances and unassociated Elastic IPs. Cost allocation tags…
AWS-SAP · AWS architecture tradeoffs
A suitable AWS architecture balances reliability, security, performance, cost and operational effort against the workload's requirements. Define acceptable downtime, data loss and traffic pa…
AWS-SCS · AWS security controls
AWS access decisions depend on the applicable identity and resource policies and other policy boundaries. A permission attached in one place does not override an applicable explicit deny. Us…
AWS-SCS · Cloud security
…iguration work together; neither alone establishes the security of the application. Worked example An application needs a cloud API credential while running. Which approach minimizes stored …
AWS-SCS · Incident response
Containment limits ongoing damage, while eradication removes the cause and recovery restores trusted operation. These activities may overlap as new evidence appears. Preserve useful evidence…
AZ-104 · Manage Azure identities and governance
…gh B2B collaboration with limited default permissions. Security groups grant access and can be assigned or dynamic, where membership rules based on attributes such as department add and remo…
AZ-104 · Implement and manage virtual networking
A network security group filters traffic to subnets or network interfaces with inbound and outbound rules processed in priority order from lowest number to highest; the first match wins and …
AZ-104 · Monitor and maintain Azure resources
…ency between a VM and an endpoint over time. Effective security rules and effective routes show the combined result for a NIC. Packet capture records traffic on a VM to storage for Wireshark…
AZ-120 · Azure networking
…e networking combines address spaces, subnets, routes, security rules and DNS. Private connectivity does not automatically configure every dependency. Trace the client's resolved address, ef…
AZ-140 · Azure networking
…e networking combines address spaces, subnets, routes, security rules and DNS. Private connectivity does not automatically configure every dependency. Trace the client's resolved address, ef…
AZ-500 · Azure security operations
Security posture management identifies risky configurations, while threat detection identifies suspicious activity. Both need owners and a response process. In Azure, inspect the affected re…
AZ-500 · Cloud security
…iguration work together; neither alone establishes the security of the application. Worked example An application needs a cloud API credential while running. Which approach minimizes stored …
AZ-500 · Microsoft Entra identity
Microsoft Entra connects identity verification with access decisions. Conditional Access evaluates configured signals and applies requirements such as additional verification. Test policy sc…
AZ-700 · Azure networking
…e networking combines address spaces, subnets, routes, security rules and DNS. Private connectivity does not automatically configure every dependency. Trace the client's resolved address, ef…
AZ-800 · Azure networking
…e networking combines address spaces, subnets, routes, security rules and DNS. Private connectivity does not automatically configure every dependency. Trace the client's resolved address, ef…
People search uses public names, handles and headlines. Private and unlisted profiles are excluded. Your goals are visible only to you in search.