certslothcertsloth
← SAA-C03 overview

Solutions Architect Associate / STUDY TOOLS

Your SAA-C03 revision map

Memory hook: protect the workload, keep it available, meet its performance needs, then remove unnecessary cost.

This independent study guide follows the public SAA-C03 exam objectives. It contains original explanations, comparisons and practice scenarios, with primary AWS documentation linked for checking details. It is not affiliated with AWS, Udemy or any course author. The practice questions are not exam dumps.

What to learn first

Exam domain Weight Explain this without looking
Security 30% Who can do what, through which network path, using whose encryption key?
Resilience 26% Which failure can this survive, and how much data or recovery time is acceptable?
Performance 24% Which access pattern or bottleneck determines the right service and scaling method?
Cost 20% Which design meets the requirements with the lowest total resource and operating cost?

The weights are published by AWS. These are four exam domains; the Well-Architected Framework has six pillars. They serve different purposes.

Check all 14 objectives

Use the task IDs to locate the official requirements. The prompts below are original practice targets, not copied task statements.

Task Be able to justify Start here
1.1 Temporary identities, role trust, least privilege, account boundaries and responsibility Identity, governance, foundations
1.2 Private application paths, segmentation, federated login and threat protection Networks, security, serverless
1.3 Encryption, key access, certificates, retention and recoverable data Object protection, security, recovery
2.1 Independent scaling, queues, events, stateless compute and workflow boundaries Messaging, containers, patterns
2.2 Failure isolation, redundancy, health checks, quotas and tested recovery Scaling, DNS, recovery, observability
3.1 Storage interface, access frequency, throughput and shared access Block/file storage, objects, hybrid storage
3.2 Workload sizing, elastic capacity, appropriate metrics and processing models Compute, scaling, containers, serverless
3.3 Database access patterns, indexes, connection pools, replicas and caches Relational data, serverless, database choices
3.4 Addressing, routing, load balancing, hybrid connectivity and edge delivery Networks, DNS, edge
3.5 Batch versus stream ingestion, data movement, transformation and governed queries Messaging, analytics, hybrid storage
4.1 Storage classes, billing minimums, retention, lifecycle and transfer method Objects, lifecycle, storage
4.2 Right sizing, commitments, interruption tolerance, utilization and scaling Compute, placement, toolbox
4.3 Capacity modes, database engines, caching, backups and retention Databases, relational data, serverless
4.4 NAT and endpoint charges, traffic paths, connectivity and caching Networks, edge, toolbox

Official detail: security, resilience, performance, cost.

A review routine that tests understanding

  1. Read for five minutes. Start with one topic's memory hook and decision table.
  2. Close the notes. Explain the chosen service, the runner-up and the requirement that separates them.
  3. Answer its five scenarios. Reveal one answer at a time; award a point only when your reasoning is correct.
  4. Write one mistake. Record the deciding clue you missed, not a copied paragraph.
  5. Return after one day, three days and a week. Spend more time on distinctions you still confuse.

Marking a page reviewed records a visit; it is not proof of mastery. Use the quick review to test comparisons across topics. Terraform exercises reinforce the architecture, but Terraform syntax is not an SAA-C03 objective.

Current services and older material

Product names, availability and quotas change. The notes distinguish current designs from historical services and services closed to new customers. A retired product can still be named in the published scope: recognize its purpose without treating it as a sensible new deployment. Review the stated requirements before applying a memorized limit.

The official in-scope list and concept list were reviewed on 2026-10-09. AWS describes its guide as non-exhaustive and subject to change, so no notes pack can promise every possible exam question. Use the objective map, reasoning practice and current service references together.

Service coverage index

The build checks every entry in the reviewed service inventory against its assigned note. This is a coverage guard, not an automatic judgment of explanation quality; the notes also receive editorial review.

Topic Services to recognize
01 · Getting Started with AWS Outposts, Wavelength, Management Console
02 · IAM & AWS CLI IAM, CLI
03 · EC2 Fundamentals EC2, Savings Plans
05 · EC2 Instance Storage EBS, EFS
06 · ELB & Auto Scaling Elastic Load Balancing, EC2 Auto Scaling, Auto Scaling
07 · RDS, Aurora & ElastiCache Aurora, Aurora Serverless, RDS, ElastiCache
08 · Route 53 Route 53
09 · Classic Solutions Architectures Elastic Beanstalk
10 · S3 Introduction S3, S3 Glacier
13 · CloudFront and Global Accelerator CloudFront, Global Accelerator
14 · Storage extras FSx, Storage Gateway, Snow Family, DataSync, Transfer Family
15 · SQS, SNS, Kinesis and Amazon MQ Data Firehose, Kinesis, MQ, SNS, SQS
16 · Containers on AWS ECR, ECS, ECS Anywhere, EKS, EKS Anywhere, EKS Distro, Fargate
17 · Serverless services Lambda, DynamoDB, API Gateway, Cognito, Step Functions, Serverless Application Repository
18 · Serverless solution architectures Device Farm
19 · Choosing an AWS database DocumentDB, Keyspaces, Neptune
20 · Data and analytics Athena, Data Exchange, EMR, Glue, Lake Formation, MSK, OpenSearch Service, Quick, Redshift
21 · Machine Learning Comprehend, Lex, Polly, Rekognition, SageMaker AI, Textract, Transcribe, Translate
22 · Monitoring & Audit X-Ray, CloudTrail, CloudWatch, Config, Health Dashboard, Managed Grafana, Managed Service for Prometheus, EventBridge
23 · IAM Advanced Control Tower, Organizations, Directory Service, IAM Identity Center, Resource Access Manager
24 · Security & Encryption Artifact, Certificate Manager, CloudHSM, Detective, Firewall Manager, GuardDuty, Inspector, KMS, Macie, Secrets Manager, Security Hub, Shield, WAF
25 · Networking: VPC Client VPN, Direct Connect, PrivateLink, Site-to-Site VPN, Transit Gateway, VPC, Network Firewall
26 · Disaster Recovery & Migrations Application Migration Service, DMS, VMware Cloud on AWS, Backup
28 · Other Services Batch, Budgets, Cost and Usage Report, Cost Explorer, Compute Optimizer, License Manager, Service Catalog, Systems Manager, Elastic Transcoder, Kinesis Video Streams, AppFlow, Amplify, CloudFormation
29 · Whitepapers & Architectures Trusted Advisor, Well-Architected Tool

Search across every published topic.