In-Scope AWS Services
The following list contains AWS services and features that are in scope for the AWS Certified Security - Specialty (SCS-C02) exam. This list is non-exhaustive and is subject to change. AWS offerings appear in categories that align with the offerings' primary functions.
Note: Security affects all AWS services. Many services do not appear in this list because the overall service is out of scope, but the security aspects of the service are in scope. For example, a candidate for this exam would not be asked about the steps to set up replication for an S3 bucket. However, the candidate might be asked about configuring an S3 bucket policy.
Rubriques
Management and Governance
AWS Audit Manager
AWS CloudFormation
AWS CloudTrail
Amazon CloudWatch
AWS Config
AWS Control Tower
AWS Organizations
AWS Resource Access Manager (AWS RAM)
AWS Service Catalog
AWS Systems Manager
AWS Trusted Advisor
AWS Well-Architected Tool
Security, Identity, and Compliance
AWS Artifact
AWS Certificate Manager (ACM)
AWS CloudHSM
Amazon Cognito
Amazon Detective
AWS Directory Service
AWS Firewall Manager
Amazon GuardDuty
AWS IAM Identity Center (AWS Single Sign-On)
AWS Identity and Access Management (IAM)
Amazon Inspector
AWS Key Management Service (AWS KMS)
Amazon Macie
AWS Network Firewall
AWS Resource Access Manager (AWS RAM)
AWS Secrets Manager
AWS Security Hub
AWS Security Token Service (AWS STS)
AWS Shield
AWS WAF
Networking and Content Delivery
Amazon API Gateway
Amazon CloudFront
AWS Direct Connect
Elastic Load Balancing (ELB)
AWS PrivateLink
Amazon Route 53
AWS Transit Gateway
Amazon VPC
AWS VPN
Compute
Amazon EC2
AWS Lambda
Containers
Amazon Elastic Container Registry (Amazon ECR)
Amazon Elastic Container Service (Amazon ECS)
Amazon Elastic Kubernetes Service (Amazon EKS)
Storage
AWS Backup
Amazon Elastic Block Store (Amazon EBS)
Amazon Elastic File System (Amazon EFS)
Amazon S3
Amazon S3 Glacier
Database
Amazon Aurora
Amazon DynamoDB
Amazon RDS
Amazon Redshift
Analytics
Amazon Athena
AWS Glue
Amazon Kinesis
Amazon OpenSearch Service
Application Integration
Amazon EventBridge
Amazon Simple Notification Service (Amazon SNS)
Amazon Simple Queue Service (Amazon SQS)
AWS Step Functions