AWS Certified Solutions Architect - Professional (SAP-C02)
Bootcamp Certificate Track
Master enterprise-grade AWS architecture. Learn multi-account strategies, complex migrations, and advanced optimization techniques for large-scale cloud environments. Estimated effort: 120–160 hours.
🔗 Official Certification PageWho This Is For
- Senior AWS architects
- Engineers managing complex AWS environments
What You'll Gain
- Advanced enterprise architecture skills
- Migration and modernization expertise
8-Week Bootcamp Curriculum
Hands-on training covering all SAP-C02 exam domains with enterprise-scale architecture patterns
Week 1 — Organizational Security Controls & Identity Strategy
Skills Area: Domain 1 (Task 1.2) + multi-account access patterns
What You'll Learn
- IAM and IAM Identity Center design for enterprise organizations
- Cross-account access evaluation and controls
- Integrating third-party identity providers
- Network-layer controls: Route tables, security groups, network ACLs
- Encryption and certificate management: AWS KMS, ACM
- Centralized security tooling: CloudTrail, Access Analyzer, Security Hub, Inspector
- Strategy for centralized security event notifications and auditing
Hands-On Labs
- Build a multi-account identity model using IAM Identity Center
- Implement cross-account roles and permission boundaries
- Enable org-level audit logging patterns (CloudTrail + central account)
- Implement KMS key policies and ACM-managed TLS for services
Week 2 — Reliability Engineering & Disaster Recovery Architecture
Skills Area: Domain 1 (Task 1.3)
What You'll Learn
- RTO/RPO driven design decisions
- DR strategies: Backup & restore, Pilot light, Warm standby, Multi-site / active-active
- AWS Elastic Disaster Recovery (use cases)
- Architecting self-healing and automated recovery
- Scale-up vs scale-out trade-offs
- Backup and restoration strategies across services
Hands-On Labs
- Design and validate DR strategy mapped to RTO/RPO targets
- Implement automated recovery patterns (multi-AZ + health-based failover)
- Design backup policies and cross-account backup strategy
- Validate restoration workflows and operational runbooks
Week 3 — Multi-Account Governance & Cost Visibility
Skills Area: Domain 1 (Tasks 1.4, 1.5)
What You'll Learn
- AWS Organizations + Control Tower landing zones
- Multi-account governance models: SCPs, Account structure by environment/business unit, Resource sharing patterns
- Central logging and event notifications in multi-account environments
- Cost monitoring and visibility: Cost Explorer, Budgets, Trusted Advisor, Pricing Calculator
- Tagging strategy that maps costs to business units
- Purchasing options and their trade-offs: Reserved Instances, Savings Plans, Spot
Hands-On Labs
- Implement an AWS Organizations structure with SCP guardrails
- Design a central logging + event aggregation strategy
- Configure tagging standards and cost allocation reporting
- Build budgets and alerts per account/business unit
Week 4 — New Solution Deployment Strategy & Operational Automation
Skills Area: Domain 2 (Task 2.1)
What You'll Learn
- Infrastructure as Code: CloudFormation architecture and modular design
- CI/CD for enterprise workloads
- Change management and safe rollout patterns
- Configuration and patch orchestration: AWS Systems Manager
- Rollback mechanisms and release strategies
- When to adopt managed services to reduce ops overhead
- Delegation patterns to enable teams at scale
Hands-On Labs
- Deploy multi-tier architecture using CloudFormation stacks
- Implement a CI/CD pipeline with rollback and approvals
- Automate patching and configuration drift controls using Systems Manager
- Implement blue/green or canary release architecture patterns
Week 5 — Business Continuity + Security Controls for New Solutions
Skills Area: Domain 2 (Tasks 2.2, 2.3)
What You'll Learn
- Business continuity architectures across AZs/Regions
- Replication strategies for data and databases
- Centralized monitoring for proactive recovery
- Security controls by requirement: IAM least privilege (roles/users), Network flows using SG/NACL rules, Service endpoints for service integrations, Credential management services
- Attack mitigation strategies at scale: AWS WAF, Shield, GuardDuty, Security Hub
- Patch management strategies for compliance
Hands-On Labs
- Design cross-region continuity architecture with automated failover readiness
- Implement replication patterns (storage/database) aligned to recovery goals
- Implement VPC endpoint strategy for private service integrations
- Implement GuardDuty + Security Hub posture monitoring baseline
Week 6 — Reliability, Performance & Cost for New Architectures
Skills Area: Domain 2 (Tasks 2.4, 2.5, 2.6)
What You'll Learn
- Multi-AZ / multi-Region reference designs
- Designing for failure and seamless recoverability
- Loose coupling using SNS/SQS/EventBridge/Step Functions
- Service quotas and limits planning
- Performance architecture: Caching, buffering, replicas, Purpose-built services selection process, Rightsizing strategy
- Cost optimization strategy: Data transfer modeling, Storage tiering, Managed services cost trade-offs, Expenditure controls and usage awareness
Hands-On Labs
- Implement a highly available, loosely coupled architecture using messaging and orchestration
- Add caching and replica strategies to meet performance targets
- Perform rightsizing analysis and propose an optimized target architecture
- Model data transfer costs and redesign for cost efficiency
Week 7 — Continuous Improvement for Existing Solutions
Skills Area: Domain 3 (Tasks 3.1–3.5)
What You'll Learn
- Operational excellence: Logging/monitoring strategies (CloudWatch patterns), Automation opportunities and remediation, Failure scenario engineering and recovery exercises
- Security improvement: Least privilege audits, Secrets management (Systems Manager, Secrets Manager), Config rules and automated remediation, Patch/update and backup process design
- Performance and reliability improvement: Bottleneck identification, Global acceleration and edge patterns, Reliability remediation and SPOF elimination
- Cost optimization opportunity identification: Under/overutilization analysis, Billing alarms, Granular CUR analysis and tagging
Hands-On Labs
- Run an architecture review: ops, security, reliability, cost findings + recommendations
- Implement AWS Config compliance rules and automated remediation
- Implement secrets rotation strategy and access audit controls
- Create dashboards/alarms for performance, reliability, and spend anomalies
Week 8 — Migration, Modernization & Professional Capstone
Skills Area: Domain 4 (Tasks 4.1–4.4) + capstone defense
What You'll Learn
- Migration assessment and wave planning: Portfolio assessment, AWS Migration Hub (use cases), 7Rs strategy selection, TCO evaluation
- Migration approach selection: DataSync, Transfer Family, Snow Family, S3 Transfer Acceleration, App migration tools (discovery + migration patterns), DMS/SCT for database modernization
- DNS/network considerations (Route 53, VPN, Direct Connect)
- Governance model during migration
- New architecture for existing workloads: Compute platform selection, Containers (ECS/EKS/Fargate/ECR), Storage (EBS/EFS/FSx/S3), Databases (RDS/Aurora/DynamoDB/OpenSearch)
- Modernization opportunities: Decoupling, Serverless, Purpose-built databases, Integration services (SQS/SNS/EventBridge/Step Functions)
Hands-On Labs
- Produce a migration plan with wave strategy and 7Rs mapping
- Design a target architecture for modernization (containers/serverless/purpose-built DB)
- Build an implementation roadmap: security, governance, ops readiness
- Capstone architecture defense: trade-offs, risks, cost, and migration plan
Certification Outcome
By completing this bootcamp, learners will be able to:
- Design enterprise-grade, multi-account AWS architectures
- Implement security controls, governance, DR, and cost visibility at scale
- Modernize and migrate workloads using best-fit AWS strategies
- Confidently sit the SAP-C02 certification exam
- Perform at Senior Solutions Architect / Lead Cloud Architect level
Need a Custom Learning Path?
If you are new to cloud computing, we recommend starting with Cloud Foundation — Live Bootcamp before SAP-C02.
You can book a free consultation to receive a personalized learning curriculum based on your experience and goals.
Ready to Start?
Join the bootcamp and begin your journey to AWS Solutions Architect Professional certification