Concept library
Every concept we cover, explained once — what it is, the mental model, when to use it, and the misconception the exam exploits. Grouped by certification and blueprint domain.
AWS Certified AI Practitioner · AIF-C01
Fundamentals of AI and ML
Fundamentals of Generative AI
Applications of Foundation Models
- AI agents — AIF-C01
- Fine-tuning foundation models — AIF-C01
- Knowledge bases (managed RAG) — AIF-C01
- Model customization approaches — AIF-C01
- Prompt engineering best practices — AIF-C01
- Prompt engineering techniques — AIF-C01
- RAG design considerations — AIF-C01
- Retrieval-Augmented Generation (RAG) — AIF-C01
- Vector databases for retrieval — AIF-C01
Guidelines for Responsible AI
Security, Compliance, and Governance for AI Solutions
CompTIA Security+ · SY0-701
General Security Concepts
- Asymmetric encryption — SY0-701
- Authentication, authorization, and accounting (AAA) — SY0-701
- Blockchain — SY0-701
- Certificate authorities and revocation — SY0-701
- Change impact analysis and backout planning — SY0-701
- Change management — SY0-701
- CIA triad — SY0-701
- Deception and disruption technology — SY0-701
- Digital certificates — SY0-701
- Digital signatures — SY0-701
- Encryption levels — SY0-701
- Gap analysis — SY0-701
- Hardware roots of trust — SY0-701
- Hashing — SY0-701
- Non-repudiation — SY0-701
- Salting and key stretching — SY0-701
- Security control types — SY0-701
- Version control — SY0-701
- Zero Trust — SY0-701
- Zero Trust control and data planes — SY0-701
Threats, Vulnerabilities, and Mitigations
- Access control and permissions — SY0-701
- Application allow listing — SY0-701
- Cloud-specific vulnerabilities — SY0-701
- Cross-site scripting (XSS) — SY0-701
- Cryptographic attacks — SY0-701
- Denial-of-service attacks — SY0-701
- Hardware and firmware vulnerabilities — SY0-701
- Least privilege — SY0-701
- Malware types — SY0-701
- Memory vulnerabilities — SY0-701
- Message-based attack vectors — SY0-701
- Network and device attack vectors — SY0-701
- Network segmentation — SY0-701
- Password attacks — SY0-701
- Phishing techniques — SY0-701
- Privilege escalation — SY0-701
- Ransomware — SY0-701
- Replay and credential replay attacks — SY0-701
- Rootkits, keyloggers, and logic bombs — SY0-701
- Social engineering — SY0-701
- SQL injection — SY0-701
- Supply chain attack vector — SY0-701
- System hardening — SY0-701
- Threat actor attributes — SY0-701
- Threat actor motivations — SY0-701
- Threat actor types — SY0-701
- Virtualization vulnerabilities — SY0-701
- Zero-day vulnerability — SY0-701
Security Architecture
- Cloud architecture models — SY0-701
- Containerization — SY0-701
- Data classification — SY0-701
- Data sovereignty — SY0-701
- Data states — SY0-701
- Embedded and real-time systems — SY0-701
- Failure modes — SY0-701
- Firewall types — SY0-701
- High availability — SY0-701
- Internet of Things (IoT) security — SY0-701
- Intrusion detection and prevention systems — SY0-701
- Jump server and proxy server — SY0-701
- Port security and 802.1X — SY0-701
- Power resilience — SY0-701
- Recovery sites — SY0-701
- SD-WAN and SASE — SY0-701
- Software-defined networking (SDN) — SY0-701
- Transport Layer Security (TLS) — SY0-701
- Virtualization — SY0-701
- VPN and tunneling — SY0-701
Security Operations
- Access control models — SY0-701
- Acquisition and procurement — SY0-701
- Alert tuning and response — SY0-701
- Asset management — SY0-701
- Biometrics — SY0-701
- CVSS and CVE — SY0-701
- Data loss prevention (DLP) — SY0-701
- Data sanitization and destruction — SY0-701
- Digital forensics — SY0-701
- DNS filtering — SY0-701
- Federation and single sign-on — SY0-701
- Firewall rule management — SY0-701
- Hardening targets — SY0-701
- Identity lifecycle management — SY0-701
- Incident response exercises — SY0-701
- Incident response process — SY0-701
- Log aggregation and archiving — SY0-701
- Log data sources — SY0-701
- Mobile device management (MDM) — SY0-701
- Multifactor authentication (MFA) — SY0-701
- Network access control (NAC) — SY0-701
- Operating system security controls — SY0-701
- Packet captures and metadata — SY0-701
- Password best practices — SY0-701
- Privileged access management (PAM) — SY0-701
- Root cause analysis — SY0-701
- Secure application techniques — SY0-701
- Secure baselines — SY0-701
- Security information and event management (SIEM) — SY0-701
- Security monitoring — SY0-701
- Threat hunting — SY0-701
- Threat intelligence sources — SY0-701
- Vulnerability prioritization — SY0-701
- Vulnerability remediation and validation — SY0-701
- Vulnerability scanning — SY0-701
- Web filtering — SY0-701
- Wireless security — SY0-701
Security Program Management and Oversight
- Business impact analysis — SY0-701
- Compliance reporting and monitoring — SY0-701
- Consequences of non-compliance — SY0-701
- Insider threat awareness — SY0-701
- Onboarding and offboarding — SY0-701
- Ongoing vendor monitoring — SY0-701
- Penetration testing engagements — SY0-701
- Phishing campaigns and reporting — SY0-701
- Privacy and data protection compliance — SY0-701
- Qualitative risk analysis — SY0-701
- Quantitative risk analysis — SY0-701
- Reconnaissance — SY0-701
- Risk assessment — SY0-701
- Risk register — SY0-701
- Security awareness training — SY0-701
- Security governance — SY0-701
- Standards, procedures, and playbooks — SY0-701
- Third-party vendor assessment — SY0-701
- Vendor agreement types — SY0-701