• Online, Self-Paced
Course Description

In this challenge lab, you will implement a security monitoring process by using AWS CloudTrail. First, you will set up CloudTrail to track management events, and then you will configure a topic by using the Amazon Simple Notification Service (SNS). Next, you will configure monitoring for Amazon CloudWatch Logs by using a metric filter, and then you will configure an alarm for a log group. Finally, you will review the management events in the CloudTrail trail, and then you will review the CloudWatch alarms and graphs. Note: Once you begin the challenge lab, you will not be able to pause, save, or exit and then return to your challenge lab. Please ensure that you have set aside enough time to complete the challenge lab before you start.

Learning Objectives

In this challenge lab, you will implement a security monitoring process by using AWS CloudTrail. First, you will set up CloudTrail to track management events, and then you will configure a topic by using the Amazon Simple Notification Service (SNS). Next, you will configure monitoring for Amazon CloudWatch Logs by using a metric filter, and then you will configure an alarm for a log group. Finally, you will review the management events in the CloudTrail trail, and then you will review the CloudWatch alarms and graphs. Note: Once you begin the challenge lab, you will not be able to pause, save, or exit and then return to your challenge lab. Please ensure that you have set aside enough time to complete the challenge lab before you start.

Framework Connections

The materials within this course focus on the Knowledge Skills and Abilities (KSAs) identified within the Specialty Areas listed below. Click to view Specialty Area details within the interactive National Cybersecurity Workforce Framework.