In-Scope AWS Services - AWS Certification

In-Scope AWS Services

The following list contains AWS services and features that are in scope for the AWS Certified Security - Specialty (SCS-C02) exam. This list is non-exhaustive and is subject to change. AWS offerings appear in categories that align with the offerings' primary functions.

Note: Security affects all AWS services. Many services do not appear in this list because the overall service is out of scope, but the security aspects of the service are in scope. For example, a candidate for this exam would not be asked about the steps to set up replication for an S3 bucket. However, the candidate might be asked about configuring an S3 bucket policy.

Management and Governance

  • AWS Audit Manager

  • AWS CloudFormation

  • AWS CloudTrail

  • Amazon CloudWatch

  • AWS Config

  • AWS Control Tower

  • AWS Organizations

  • AWS Resource Access Manager (AWS RAM)

  • AWS Service Catalog

  • AWS Systems Manager

  • AWS Trusted Advisor

  • AWS Well-Architected Tool

Security, Identity, and Compliance

  • AWS Artifact

  • AWS Certificate Manager (ACM)

  • AWS CloudHSM

  • Amazon Cognito

  • Amazon Detective

  • AWS Directory Service

  • AWS Firewall Manager

  • Amazon GuardDuty

  • AWS IAM Identity Center (AWS Single Sign-On)

  • AWS Identity and Access Management (IAM)

  • Amazon Inspector

  • AWS Key Management Service (AWS KMS)

  • Amazon Macie

  • AWS Network Firewall

  • AWS Resource Access Manager (AWS RAM)

  • AWS Secrets Manager

  • AWS Security Hub

  • AWS Security Token Service (AWS STS)

  • AWS Shield

  • AWS WAF

Networking and Content Delivery

  • Amazon API Gateway

  • Amazon CloudFront

  • AWS Direct Connect

  • Elastic Load Balancing (ELB)

  • AWS PrivateLink

  • Amazon Route 53

  • AWS Transit Gateway

  • Amazon VPC

  • AWS VPN

Compute

  • Amazon EC2

  • AWS Lambda

Containers

  • Amazon Elastic Container Registry (Amazon ECR)

  • Amazon Elastic Container Service (Amazon ECS)

  • Amazon Elastic Kubernetes Service (Amazon EKS)

Storage

  • AWS Backup

  • Amazon Elastic Block Store (Amazon EBS)

  • Amazon Elastic File System (Amazon EFS)

  • Amazon S3

  • Amazon S3 Glacier

Database

  • Amazon Aurora

  • Amazon DynamoDB

  • Amazon RDS

  • Amazon Redshift

Analytics

  • Amazon Athena

  • AWS Glue

  • Amazon Kinesis

  • Amazon OpenSearch Service

Application Integration

  • Amazon EventBridge

  • Amazon Simple Notification Service (Amazon SNS)

  • Amazon Simple Queue Service (Amazon SQS)

  • AWS Step Functions