Complete Guide to AWS Security, Governance and Compliance Management

Build AWS security, governance and compliance knowledge covering access, data protection, incident response, UK requirements, supplier risks and ongoing compliance assurance.

  • 4.8 (3 reviews)
  • 29 students
  • Last Update: 3 April, 2026

What you'll learn

  • Explain AWS security responsibilities, control boundaries, security frameworks and organisational accountability.
  • Understand how AWS accounts, Organisations, Control Tower and IAM can support secure governance at scale.
  • Recognise key approaches to protecting AWS data, encryption, networks, compute, containers and serverless workloads.
  • Understand AWS security monitoring, misconfiguration detection, incident investigation, evidence preservation and recovery.
  • Explore UK data protection, NCSC, NIS and cyber duties alongside supplier, sovereignty, concentration risk and compliance assurance.
cpdqs
Expert-Led
Content
Practical
Real-World Focus
Trusted by
Professionals

Course Description


Complete Guide to AWS Security, Governance and Compliance Management explores the key security, governance and compliance considerations involved in managing AWS environments.

The course covers AWS security boundaries, shared security responsibilities, security frameworks, ownership and accountability, as well as governance at scale through account design, organisational guardrails and access governance. It also examines data protection, encryption, network boundaries and workload security across compute, containers and serverless environments.

Learners will also explore AWS security monitoring, incident investigation, evidence preservation, recovery and cloud exit planning. The course addresses UK data protection, NCSC, NIS and cyber duties, alongside supplier governance, sovereignty, concentration risk and approaches to compliance assurance.

 

What You'll Learn

  • Explain AWS security responsibilities, control boundaries, security frameworks and organisational accountability.
  • Understand how AWS accounts, Organisations, Control Tower and IAM can support secure governance at scale.
  • Recognise key approaches to protecting AWS data, encryption, networks, compute, containers and serverless workloads.
  • Understand AWS security monitoring, misconfiguration detection, incident investigation, evidence preservation and recovery.
  • Explore UK data protection, NCSC, NIS and cyber duties alongside supplier, sovereignty, concentration risk and compliance assurance.

Why Take this Course

Managing AWS securely requires more than understanding individual security controls. Organisations also need clear ownership, governance, data protection, incident response and compliance oversight.

This course provides a structured view of AWS security and governance, helping learners understand how technical controls connect with organisational risk and regulatory responsibilities.

This course helps you:


✓ Strengthen understanding of AWS security boundaries and shared responsibilities.
✓ Develop awareness of governance controls for accounts, identities and privileged access.
✓ Understand key considerations for protecting AWS data and workloads.
✓ Build awareness of AWS monitoring, incident response, recovery and cloud exit planning.
✓ Connect AWS security practices with UK data protection, cyber duties and compliance assurance.

Who this Course is for

  • Cloud and AWS Professionals
  • Information Security Professionals
  • IT and Technology Managers
  • Data Protection and Compliance Professionals
  • Cloud Risk and Governance Professionals

Prerequisites

  • No prior data protection experience required
  • A basic understanding of your organisation
  • Access to a computer and internet
  • Enthusiasm to learn and apply best practice

Course Features

  • Lifetime access Learn anytime and revisit every lesson.
  • Mobile friendly Study smoothly on phone, tablet or desktop.
  • Certificate of completion Showcase your achievement after completion.
  • Downloadable resources Keep practical materials for future reference.
  • Practical Scenarios Apply knowledge through realistic workplace scenarios.
  • Dedicated Support Get help whenever you need guidance.

Course Curriculum

5 sections

20 lectures

    • 1.1 Reading Cloud Risk and Control

    • 1.2 Who Secures What in AWS

    • 1.3 Applying AWS Security Frameworks

    • 1.4 Assigning Ownership and Accountability

    • 2.1 Designing Accounts to Limit Blast Radius

    • 2.2 Setting Guardrails with Organisations and Control Tower

    • 2.3 Reading IAM Policies Like an Attacker

    • 2.4 Governing Privileged and Workload Access

    • 3.1 Controlling Data from Creation to Deletion

    • 3.2 Governing Encryption, Keys, and Secrets

    • 3.3 Building Defensible AWS Network Boundaries

    • 3.4 Securing Compute, Containers, and Serverless

    • 4.1 Turning AWS Telemetry into Security Insight

    • 4.2 Exposing Misconfiguration and Attack Paths

    • 4.3 Investigating Incidents and Preserving Evidence

    • 4.4 Designing Recovery, Resilience, and Cloud Exit

    • 5.1 Applying UK Data Protection in AWS

    • 5.2 Navigating NCSC, NIS, and Cyber Duties

    • 5.3 Governing Suppliers, Sovereignty, and Concentration Risk

    • 5.4 Automating Evidence and Emerging-Risk Assurance

Assessment & Certificate

Validate Your AWS Security, Governance and Compliance Knowledge

This CPD-accredited course includes assessments to reinforce your understanding of the topics covered. After successfully completing the course, you will receive a CPD certificate recognising your achievement and supporting your continuing professional development record.

The CPD certificate is separate from any official certification. Candidates must complete the relevant certification provider's examination and requirements independently.

Assessment & Certificate

Career Opportunities

This course can add value to existing knowledge and experience in AWS, cloud security, information security, governance, risk and compliance. It can support continuing professional development and strengthen understanding for learners exploring security and governance responsibilities within AWS environments.

Roles linked to this subject area in the UK may include:

  • Cloud Security Engineer
  • Cloud Security Analyst
  • AWS Security Specialist
  • Information Security Analyst
  • Cloud Governance Manager
  • Information Security Manager
  • Cloud Risk Analyst

Student Reviews

4.8

Course Rating

5
100%
4
0%
3
0%
2
0%
1
0%

The course provided a useful overview of AWS security from both technical and governance perspectives. I particularly found the sections on IAM, account governance and shared responsibilities valuable.

Response from DPG Support Team
Thank you, Oliver. We’re pleased that you found the connection between AWS security controls and governance responsibilities useful.

I appreciated the coverage of incident investigation, evidence preservation and recovery. It helped put AWS security monitoring into a broader operational context.

Response from DPG Support Team
Thank you, Emily. We’re glad you found the incident and resilience content useful for your professional development.

Frequently Asked Questions

The course is suitable for cloud and AWS professionals, information security teams, IT and technology managers, data protection and compliance professionals, and cloud risk and governance professionals.

The course covers a broad range of AWS security, governance and compliance topics and is best suited to learners who have some familiarity with cloud or information security concepts.

Yes. The curriculum covers IAM policies, privileged access and workload access, alongside AWS account governance, Organisations and Control Tower.

Yes. The course includes UK data protection, NCSC, NIS and cyber duties, as well as supplier, sovereignty and concentration risks.

No. This course provides general training and educational information only. Organisations and individuals should follow applicable laws, professional guidance and internal policies and consult qualified specialists when applying requirements to specific situations.