This learner guide gives step-by-step instructions for completing the C1041 AWS Certified Cloud Practitioner CLF-C02 lab series. The labs follow the official exam domains: Cloud Concepts, Security and Compliance, Cloud Technology and Services, and Billing, Pricing, and Support.
By the end of the course, you will be able to:
- Explain the value proposition and benefits of the AWS Cloud.
- Identify AWS Cloud design principles and Well-Architected Framework pillars.
- Explain migration benefits, migration strategies, and cloud economics.
- Understand the AWS shared responsibility model.
- Identify AWS security, governance, compliance, IAM, and logging services.
- Describe AWS global infrastructure, deployment models, and access methods.
- Identify core AWS compute, storage, database, networking, analytics, AI/ML, migration, and management services.
- Compare AWS pricing models and cost management tools.
- Identify AWS Support plans and technical resources.
- Complete a CLF-C02 readiness challenge.
| Stage | Labs | Main Skill |
|---|---|---|
| Cloud Concepts | 01-02 | Cloud value, migration, economics, Well-Architected |
| Security and Compliance | 03-04 | Shared responsibility, IAM, governance, security services |
| Technology and Services | 05-08 | Global infrastructure and AWS service selection |
| Billing and Support | 09 | Pricing, budgets, cost tools, support |
| Capstone | 10 | End-to-end CLF-C02 readiness |
- Confirm your AWS account or sandbox is ready.
- Confirm your assigned AWS Region.
- Create a folder named
C1041-AWS-Cloud-Practitioner. - Create one subfolder for each lab.
- Use only sample data provided by the trainer or synthetic data.
- Do not upload confidential, personal, or regulated data.
For every lab:
- Read the objective and scenario.
- Confirm whether the lab is hands-on, diagram-only, or guided walkthrough.
- Complete the task steps.
- Capture evidence such as screenshots, tables, or diagrams.
- Answer the reflection questions.
- Clean up any AWS resources created during the lab.
You will explain why organizations move to AWS.
Steps:
- Create a worksheet named
C1041-Lab01-Cloud-Value.md. - Define elasticity, scalability, agility, high availability, fault tolerance, global reach, and pay-as-you-go.
- Compare fixed cost and variable cost models.
- List at least five benefits of AWS Cloud.
- Create a migration driver table with business, technical, security, and cost drivers.
- Map each driver to an AWS Cloud benefit.
- Add AWS Cloud Adoption Framework perspectives.
- Save the worksheet.
Validation:
- Cloud benefits are clearly defined.
- Migration drivers are mapped to outcomes.
- Economics concepts are explained.
You will classify design decisions by Well-Architected pillars.
Steps:
- Create a table with the six Well-Architected pillars.
- Define operational excellence, security, reliability, performance efficiency, cost optimization, and sustainability.
- Review ten design decisions provided by the trainer.
- Map each decision to the most relevant pillar.
- Identify whether each decision improves availability, elasticity, automation, or cost control.
- Add one improvement recommendation for each weak design decision.
- Save the table.
Validation:
- Six pillars are correctly defined.
- Design decisions are mapped to the right pillars.
- Recommendations are practical.
You will identify AWS and customer security responsibilities.
Steps:
- Create a shared responsibility matrix.
- Add service examples for Amazon EC2, Amazon S3, AWS Lambda, and Amazon RDS.
- Identify what AWS manages for each service.
- Identify what the customer manages for each service.
- Review root user protection best practices.
- Create an IAM user, group, role, and policy concept map.
- Identify where MFA should be used.
- Add least-privilege recommendations.
- Save the worksheet.
Validation:
- AWS and customer responsibilities are separated.
- Root account protection is described.
- IAM concepts are correctly distinguished.
You will identify AWS services used for governance, compliance, logging, and security.
Steps:
- Create a security service map.
- Add AWS Artifact for compliance reports.
- Add AWS CloudTrail for API auditing.
- Add Amazon CloudWatch for monitoring.
- Add AWS Config for configuration tracking.
- Add Amazon GuardDuty for threat detection.
- Add AWS Shield and AWS WAF for edge protection.
- Add AWS Security Hub and Amazon Inspector concepts.
- Match each service to a security or compliance scenario.
- Save the service map.
Validation:
- Security services are matched to correct use cases.
- Logging and monitoring roles are clear.
- Compliance resources are identified.
You will describe AWS global infrastructure and deployment options.
Steps:
- Create a diagram showing Regions, Availability Zones, edge locations, and Regional edge caches.
- Explain how Regions and Availability Zones support high availability.
- Compare cloud, hybrid, and on-premises deployment models.
- Compare AWS Management Console, AWS CLI, SDKs, APIs, and infrastructure as code.
- Identify when repeatable deployment is better than one-time manual deployment.
- Save the diagram and comparison table.
Validation:
- Global infrastructure components are correctly described.
- Deployment models are compared.
- Access methods are identified.
You will select compute and integration services for common scenarios.
Steps:
- Create a service selection table.
- Add Amazon EC2, Auto Scaling, Elastic Load Balancing, AWS Lambda, Amazon ECS, Amazon EKS, AWS Fargate, AWS Batch, and Elastic Beanstalk.
- Add Amazon SQS, Amazon SNS, Amazon EventBridge, and AWS Step Functions.
- For each scenario, choose a service and justify the choice.
- Identify which options are serverless, container-based, or virtual-machine based.
- Add one cost or operations consideration for each choice.
- Save the table.
Validation:
- Compute options are distinguished clearly.
- Application integration services are mapped correctly.
- Cost and operations considerations are included.
You will match storage, database, networking, and content delivery services to use cases.
Steps:
- Create a service map for storage, database, network, and content delivery.
- Add Amazon S3, S3 Glacier, Amazon EBS, Amazon EFS, and AWS Storage Gateway.
- Add Amazon RDS, Amazon Aurora, Amazon DynamoDB, Amazon Redshift, and Amazon ElastiCache.
- Add Amazon VPC, Route 53, CloudFront, VPN, Direct Connect, and API Gateway.
- Match each service to a business use case.
- Identify whether each service is managed, serverless, relational, NoSQL, object storage, block storage, or file storage.
- Save the map.
Validation:
- Storage and database differences are clear.
- Networking and content delivery services are matched to scenarios.
- Managed service responsibilities are described.
You will identify additional AWS service categories that appear in the exam guide.
Steps:
- Create a service category table.
- Add analytics services such as Amazon Athena, AWS Glue, Amazon Kinesis, and Amazon QuickSight.
- Add AI/ML services such as Amazon SageMaker, Amazon Bedrock, Amazon Rekognition, Amazon Comprehend, and Amazon Lex.
- Add migration services such as AWS Migration Hub, AWS Application Migration Service, AWS Database Migration Service, and AWS Snow Family.
- Add management and governance services such as AWS CloudFormation, AWS Organizations, AWS Systems Manager, AWS Trusted Advisor, and AWS Control Tower.
- Match each service to a beginner-level use case.
- Save the table.
Validation:
- Service categories are correctly grouped.
- Beginner-level use cases are accurate.
- Management and migration services are distinguished.
You will compare AWS pricing and cost management tools.
Steps:
- Create a pricing model comparison table.
- Compare On-Demand, Savings Plans, Reserved Instances, Spot Instances, and Free Tier.
- Identify when each pricing model is suitable.
- Open or review AWS Pricing Calculator.
- Create a sample estimate for a simple workload.
- Review AWS Budgets concepts.
- Review Cost Explorer concepts.
- Add cost optimization actions such as rightsizing, deleting unused resources, and using managed services.
- Save the worksheet.
Validation:
- Pricing models are compared accurately.
- Cost tools are identified.
- Optimization actions are practical.
You will complete a scenario-based AWS Cloud Practitioner review.
Steps:
- Read the capstone scenario from the trainer.
- Identify the business need.
- Select AWS services for compute, storage, database, network, security, monitoring, and cost control.
- Explain the shared responsibility model for the selected services.
- Identify global infrastructure choices.
- Add a basic security and compliance checklist.
- Add a cost management plan.
- Select an AWS Support plan and justify it.
- Create a final architecture and service selection diagram.
- Complete the readiness checklist.
Readiness checklist:
- Cloud value and migration drivers are explained.
- Well-Architected principles are referenced.
- Shared responsibility and IAM concepts are correct.
- Core AWS services are selected appropriately.
- Cost, billing, and support resources are included.
Submit a zip file containing:
- Cloud value worksheet.
- Well-Architected mapping table.
- Shared responsibility and IAM worksheet.
- AWS service maps.
- Pricing and cost worksheet.
- Capstone service selection diagram and reflection.
Answer these after the capstone:
- Which AWS service category was easiest to identify?
- Which shared responsibility example was most important?
- Which pricing model is most useful for predictable workloads?
- Which support resource would you use first for technical guidance?
- What topic will you review before taking CLF-C02?