
Defend Your AWS Workloads
Automate Secure Cloud Deployments with Terraform and CI/CDBy Lena XuLength8h 12m
About this audiobook
AWS security and cloud threat detection are critical for every DevOps team. In Defend Your AWS Workloads, Lena Xu delivers a hands-on guide to protecting, detecting, and responding to live threats on AWS. From IAM hardening and encryption to GuardDuty and real-world security operations, this book takes you from beginner to pro. You'll learn how to automate incident response, secure CI/CD pipelines, and audit your environment against production demands. Unlike Gene Kim (The DevOps Handbook) and Julien Vehent (Securing DevOps), this book focuses exclusively on AWS-native tools and live threat scenarios. Whether you're a developer, SRE, or security engineer, you'll get actionable strategies to defend your workloads today.
What You'll Learn
Implement IAM policies and encryption for AWS services
Set up GuardDuty, CloudTrail, and Security Hub for detection
Respond to incidents with automated playbooks
Secure Kubernetes and serverless workloads on AWS
Comply with SOC 2, PCI DSS, and GDPR in the cloud
Who This Book Is For
DevOps engineers, cloud architects, and security professionals who want to master AWS security operations. No prior security experience required—just basic AWS knowledge.
Stop guessing and start defending. Lena Xu shows you how to outsmart attackers with proven techniques. Get your copy of Defend Your AWS Workloads today.
This hands-on Cloud/DevOps guide is written to be used at the keyboard: every concept is paired with something you can run, adapt, and keep. You move from first principles to real, working results, with the common errors and fixes called out along the way so you are never stuck for long.
Audiobook details
GenreTechnology
Length8 hrs 12 mins
Narrated byListen with 1,000+ voices
FormateBook with Audio
LanguageEnglish
Table of contents
1Introduction
2Preface
3Chapter 1 — Cloud DevOps Landscape: Why Security Must Be Embedded
4Chapter 2 — Setting Up Your Secure DevOps Environment
5Chapter 3 — Infrastructure as Code (IaC) with Security: Terraform for VPC, IAM, and Encryption
Show all chaptersShow less
6Chapter 4 — Identity and Access Management for DevOps
7Chapter 5 — Secure Networking: VPC Design with Private Subnets, NACLs, and Security Groups
8Chapter 6 — Continuous Integration: Secure Code Repositories and Build Pipelines
9Chapter 7 — Container Security: Docker, Amazon ECR, and Image Scanning
10Chapter 8 — Orchestration Security: Amazon EKS with Pod Security Policies
11Chapter 9 — Continuous Deployment: Blue/Green Deployments and Safe Rollbacks
12Chapter 10 — Secrets Management: AWS Secrets Manager and Parameter Store
13Chapter 11 — Monitoring and Logging: CloudWatch, CloudTrail, and Centralized Logging
14Chapter 12 — Threat Detection: GuardDuty, Security Hub, and Automated Response
15Chapter 13 — Compliance as Code: AWS Config Rules and Custom Policies
16Chapter 14 — Backup and Disaster Recovery: Automating Backups and Cross-Region Replication
17Chapter 15 — Security Testing in the Pipeline: SAST, DAST, and Vulnerability Scanning
18Chapter 16 — Incident Response Runbooks: Automating Remediation with Lambda
19Chapter 17 — Cost Management and Security: Balancing Trade-offs
20Chapter 18 — Next Steps: Continuous Improvement and Certification Paths
21About the Author