Corporate · onsite · online training worldwide
contact@DevOpsSchool.com· +91 99057 40781·
> Cloud · DevOpsSchool Trainer

AWS Trainer in Pune

Private corporate batches delivered onsite across Pune, or live online in IST (UTC+5:30) — taught by a practitioner who runs AWS in production.

20 years across DevOps, SRE and Security · 10,000+ engineers trained · Trained teams at JPMorgan Chase, Verizon, Nokia and the World Bank

DeliveryOnsite at your office · Online
FormatsCorporate · 1-on-1 · Cohort
AgendaCustomisable
TimezoneIST (UTC+5:30)
Engineers we've trained work at
JPMorgan ChaseBank of AmericaWells FargoVerizonNokiaWorld BankGE HealthcareVMwareOracleQualcommMercedes-BenzAirbusDatadogSplunkDeloitteInfosysWiproCapgemini
# who teaches it

Your AWS trainer

Rajesh Kumar

Principal DevOps Engineer & Architect

Cloud architectureMulti-cloud estatesInfrastructure at scale20 years in productionPrincipal / architect roles10,000+ engineers trainedM.Tech BITS Pilani25+ certifications

Rajesh teaches AWS from the boundaries outward — account structure, policy evaluation and VPC reachability before any service catalogue — and labs run in ap-south-1 so latency, residency and cost behave the way they will for a Pune workload. The syllabus carries the edges this market hits: assuming a role into an organisational unit you do not control, tracing a denial through identity policy, resource policy, permission boundary and service control policy, extending a network over Direct Connect and VPN until asymmetric routing and split-horizon DNS are demonstrated rather than described, and attributing a month of spend by tag before anyone argues about commitment purchases.

Twenty years across DevOps, SRE and Security, in principal and architect roles at PayPay, SoftwareAG, ServiceNow, JDA Software, Intuit, Adobe and others. He has trained engineers at JPMorgan Chase, Verizon, Nokia, the World Bank, VMware, Oracle, Mercedes-Benz and Airbus — more than 10,000 people personally. He teaches what he runs, not what he reads.

One practitioner, not a bench

You are booked with a named engineer, and that is who turns up. Marketplaces and larger providers rotate whoever is free, so the person who sold you the agenda is rarely the person teaching it.

The same trainer is available for the next engagement, which matters when a team builds on what it learned last time.

18,000+certified learners
500+corporate batches delivered
50+countries served
100+certification programmes
# faculty

Who delivers AWS engagements

Your batch is assigned a named trainer before it starts, and that is who teaches it. See the full faculty.

How your AWS trainer is chosen

Engagements are matched on the tool, not the calendar. For AWS that means a trainer who has run it in production — AWS architecture and operations for Pune's regulated captives and SaaS product teams — rather than whoever is free that week. You are told who is teaching before you commit, and that person is on the discovery call that shapes the agenda.

Where a batch is large enough to need a second trainer, the pairing is declared up front. The lead trainer stays accountable for the syllabus and the assessment either way.

Rajesh Kumar

Principal DevOps Engineer & Architect

India20 yrsLead trainer

Twenty years across DevOps, SRE and Security in principal and architect roles at PayPay, SoftwareAG, ServiceNow, JDA Software, Intuit, Adobe, IBM/Emptoris, Ness, MindTree and Accenture. He has trained more than 10,000 engineers personally, at organisations including JPMorgan Chase, Verizon, Nokia, the World Bank, VMware, Oracle, Mercedes-Benz and Airbus. He teaches what he runs, not what he reads.

Durga Prasad

IndiaInstructorCoach

Gaurav Aggarwal

IndiaInstructorCoach

Harsh Mehta

IndiaInstructorCoach

Kapil Gupta

IndiaInstructorCoach

Kunal Jain

IndiaInstructorCoach

Nikhil Gupta

IndiaInstructorCoach

Pranab Kumar

IndiaInstructorCoach

Rohit Ghatol

IndiaInstructorCoach

Amit Agarwal

IndiaInstructorCoach

Anil Kumar

IndiaInstructorCoach

Balachandran Anbalagan

IndiaInstructorCoach

# how to engage

Four ways to work with this trainer

Private corporate batch

Teams of 8–30

Custom agenda, your timezone, onsite or online, NDA-friendly.

Request a quote

1-on-1 mentoring

Individual engineers

A private instructor and a curriculum built around your goal.

₹99,999

Live & Interactive cohort

Individuals who want peers

Scheduled batch, max 8 to 10 hours of live instruction.

₹34,999

Self-paced video

Self-starters

Full LMS access — 20+ courses and 50+ tools included.

₹833/mo
# private batches

Private AWS training for your team

A private batch starts with a discovery call. We look at the stack you actually run — the CI system, the cloud, the constraints — and map the agenda onto it, so examples use your topology rather than a generic one.

Onsite sessions run across Kharadi, Magarpatta, Baner, Balewadi, Hinjewadi, Yerwada and Viman Nagar; you provide the room, a screen and internet egress to AWS, we bring trainer, agenda, lab material, assessments and certificates. Hours are 09:30 to 17:30 IST, and because so many Pune teams owe an evening overlap to a US or EMEA counterpart we frequently split the same content into 08:00 to 13:00 IST half-days across more calendar days. Attendees provision their own accounts for labs — a personal free-tier account or a sandbox account from your landing zone — and we walk the group through budget alarms and teardown so nobody is surprised by a bill; where corporate policy forbids personal accounts we adapt the labs to a sandbox OU with a spend cap. All work is done in ap-south-1 by default so latency and residency behave the way they will in production. Invoicing is in INR with GST against your purchase order from the Indian entity.

Every attendee leaves with recordings, slides, lab repositories and a completion certificate. You receive an attendance and assessment report. Invoicing supports PO and GST.

Talk to us about a private AWS batch

What you provide vs what we bring

  • You: the room or the call, and the engineers
  • Us: trainer, agenda, labs, assessment, certificates
  • Labs: we guide your team through provisioning their own free-tier cloud environment — the skill goes with them
# the technology

What is AWS?

AWS is Amazon's public cloud — several hundred services for compute, storage, data, messaging and identity, all created, permissioned, logged and billed through one API. For an engineering team in Pune the first fact worth internalising is not the size of that catalogue but its geography. The nearest region, ap-south-1, sits in Mumbai, close enough that a leased circuit from a Pune office reaches it in single-digit milliseconds, which is why so much local work is deliberately hybrid: an application tier in the region, a system of record that residency rules keep on your own premises, and a Direct Connect leg with a VPN standing behind it.

Three decisions then carry the rest of a design. Which account a workload belongs in, because the account is where quotas apply, billing lands and a mistake stops — and here that account often belongs to a customer, so the working skill is assuming a role into it, operating under service control policies written elsewhere and proving least privilege without ever seeing the management account. What routing and security groups sit around it, since subnets, route tables, NAT, interface endpoints and Transit Gateway attachments decide reachability, and hybrid routes are where reachability quietly stops behaving. And where the data physically rests, because KMS key policy, replication scope and region pinning are what an auditor actually asks about.

The rest composes on top: EC2 with launch templates and Auto Scaling, S3, EBS and EFS, RDS, Aurora and DynamoDB, Lambda with SQS, SNS and EventBridge, containers on ECS, Fargate and EKS, and CloudWatch, CloudTrail and Config as the record of what happened. Teams that operate AWS well express all of it in CloudFormation or Terraform and tag it so every rupee of the bill lands on a team that can explain it.

Why this skill matters now

Two forces pull AWS demand in Pune in different directions at the same time. The regulated captives — banking, insurance, payments and their shared-services arms around Kharadi, Yerwada and Magarpatta — are long past deciding whether to use the cloud and deep into proving where data rests and who could have reached it. That is architecture and evidence work: region pinning enforced by policy rather than by convention, private connectivity back to systems nobody is allowed to retire, encryption whose key policy names a specific principal, and an audit trail that holds up when someone asks about a Tuesday six months ago.

The product and SaaS benches in Baner, Balewadi, Viman Nagar and Kalyani Nagar ask a different question. Their estate is already on AWS and the pressure is unit economics — Savings Plans against Spot for build fleets, Graviton, S3 lifecycle transitions, cross-zone transfer nobody budgeted for, and cost attributed per tenant rather than per account. Spend is reviewed here alongside latency, by engineers rather than by finance.

Underneath both sits a condition specific to a services city: a large share of Pune engineers operate inside somebody else's AWS Organizations. Local interviews reflect it. Explaining permission boundaries, external IDs and why a call was denied when the identity policy plainly allows it is worth more in this market than reciting instance families.

AWS training
# outcomes

What your team can do afterwards

Operate inside an AWS Organizations you do not own — cross-account role assumption with external IDs, permission boundaries, and reasoning about a service control policy you cannot read
Build a VPC for a hybrid estate: subnet tiers across Availability Zones, controlled egress, interface endpoints, and route propagation through Transit Gateway
Connect on-premises systems to ap-south-1 over site-to-site VPN and Direct Connect, and diagnose the routing and DNS failures that only appear once both paths exist
Run compute that survives an Availability Zone loss, using launch templates, Auto Scaling, target-group health checks, and Spot capacity only where interruption is acceptable
Choose between S3, EBS, EFS, RDS, Aurora and DynamoDB on access pattern, failover behaviour and cost, then prove a restore against a stated RPO and RTO
Pin data to a region and evidence it — policy conditions, KMS key policy and grants, replication scope, and the CloudTrail and Config record an auditor will ask for
Rebuild an entire environment from Terraform or CloudFormation with remote state and review gates, so nothing created by hand survives
Attribute cloud spend by tag and reduce it deliberately with commitment purchases, Graviton, storage class transitions and changed data-transfer paths
# curriculum

9 modules. Live demos in a real lab, not slides.

01Accounts, Organizations and identity you may not ownLive & Interactive5 hrs · 2 assignments · 1 capstone

The boundary layer first, because everything after it inherits the answer. What an account actually isolates, how organisational units and service control policies bound it, and then the situation most engineers here work in — holding a role inside an estate whose management account belongs to a customer. Policy evaluation is taught by breaking access on purpose and reading which layer produced the denial.

Topics: The account as isolation, quota and billing boundary · Organizations, organisational units and service control policies · IAM users, groups, roles, instance profiles and service-linked roles · Identity, resource and trust policies, and why an explicit deny always wins · Cross-account role assumption, external IDs and confused-deputy protection · Permission boundaries and delegated administration · Federated single sign-on, permission sets and short-lived credentials · Debugging an AccessDenied with CloudTrail, Access Analyzer and the policy simulator

  • Assignments: (1) Assume a role into a second account with an external ID, then prove the trust policy rejects the same call without it; (2) Write a deployment role scoped to one workload and demonstrate three calls it correctly refuses
  • Capstone: Produce an access design for a team working inside a customer's organisation, naming the roles, boundaries, tagging obligations and the one exception you would have to request
02VPC design and the hybrid path to ap-south-1Live & Interactive5 hrs · 2 assignments · 1 capstone

Reachability built by hand until it is obvious, then extended off the region. Subnet tiers, route tables, stateful security groups against stateless network ACLs, and egress you can defend. Then the hybrid half that local designs depend on: site-to-site VPN, Direct Connect with a standby path, route propagation through Transit Gateway, and DNS that has to resolve in both directions.

Topics: CIDR planning that will not collide with an existing on-premises range · Subnets, route tables, internet gateways and NAT · Security groups versus network ACLs, and where each belongs · Gateway and interface endpoints, and PrivateLink to a partner service · Site-to-site VPN, Direct Connect, virtual interfaces and failover behaviour · Transit Gateway attachments, route tables and propagation · Route 53 private hosted zones with inbound and outbound Resolver endpoints · Flow logs, Reachability Analyzer and diagnosing asymmetric paths

  • Assignments: (1) Build a private tier with no route to the internet that still reaches S3, KMS and Systems Manager; (2) Join two VPCs and a simulated on-premises network through Transit Gateway, and resolve names across the boundary in both directions
  • Capstone: Design the network for a workload whose database stays on your own premises and whose application tier runs in ap-south-1, with the failure path written down
03Compute: instance fleets, containers and event-driven workLive & Interactive5 hrs · 2 assignments · 1 capstone

Choosing compute on evidence rather than habit. Instance families and purchase options, image construction, launch templates and the difference between an instance status check and a target-group health check, which is where most bad scaling behaviour begins. Then containers with task and pod-scoped identity, and functions where the work is genuinely event-shaped.

Topics: Instance families, Graviton, and on-demand, Spot, Reserved and Savings Plan pricing · Image pipelines, user data and instance metadata service v2 · Launch templates, Auto Scaling groups and scaling policy types · Load balancer target groups, health checks and connection draining · ECS task definitions, Fargate, awsvpc networking and task roles · EKS node groups, Fargate profiles and IAM roles for service accounts · Lambda concurrency, cold starts, VPC attachment and event sources · Systems Manager Session Manager and Patch Manager instead of open SSH

  • Assignments: (1) Roll a new machine image through an Auto Scaling group without dropping a request; (2) Give a container access to a bucket through a task role or a service-account role with no static credentials anywhere
  • Capstone: Run one workload three ways — Auto Scaling, Fargate and a function — then recommend one with measured numbers for cost, latency and operational burden
04Storage: objects, blocks, files and backupLive & Interactive5 hrs · 2 assignments · 1 capstone

Where state lives and what it costs to keep it there. S3 semantics taught through the access-control interaction that causes most incidents, then storage classes and lifecycle as a cost lever rather than a checkbox, block and file storage for workloads that cannot be re-architected, and a backup design whose restore has actually been run.

Topics: S3 storage classes, lifecycle transitions and Intelligent-Tiering · Versioning, Object Lock, replication and what replication does not copy · Bucket policies, Block Public Access, access points and presigned URLs · EBS volume types, IOPS, throughput and snapshot strategy · EFS and FSx for Windows workloads that expect a shared file system · AWS Backup, backup vaults and cross-account copies · Request, retrieval and transfer charges as design inputs

  • Assignments: (1) Configure a bucket that is private, versioned, encrypted and lifecycle-managed, then prove a public read fails and a lifecycle transition happened; (2) Restore a volume from a snapshot into a different Availability Zone and time it
  • Capstone: Produce a storage and backup design for a stateful application with a demonstrated recovery point and recovery time rather than an asserted one
05Databases and data servicesLive & Interactive5 hrs · 2 assignments · 1 capstone

The service choice that is hardest to reverse. Relational engines on RDS and Aurora judged on failover and maintenance behaviour rather than feature lists, DynamoDB modelled from access patterns instead of from an entity diagram, caching where it genuinely helps, and the migration and replication paths used when a system of record has to stay where it is.

Topics: RDS engine choice, parameter and option groups, maintenance windows · Multi-AZ failover, read replicas and what each actually protects against · Aurora storage model, cluster endpoints and failover ordering · DynamoDB partition key design, capacity modes, global secondary indexes and streams · ElastiCache and RDS Proxy for connection pressure · Database Migration Service and change data capture from an on-premises source · Encryption at rest and in transit, and point-in-time recovery drills

  • Assignments: (1) Force a multi-AZ failover and measure the real application impact rather than the advertised one; (2) Model a DynamoDB table from three stated query patterns and show which fourth query it cannot serve
  • Capstone: Deliver a data plan covering placement, replication, encryption, retention and the restore rehearsal that proves it
06Infrastructure as codeLive & Interactive5 hrs · 2 assignments · 1 capstone

Making an account reproducible and reviewable. CloudFormation as the native path — template structure, intrinsic and condition functions, change sets, rollback behaviour and StackSets across accounts — then Terraform where the estate spans more than one provider, with remote state, locking and module structure. Adoption of hand-built resources gets its own time, because that is what most teams face.

Topics: Template structure, parameters, intrinsic functions and condition functions · Stacks, change sets, rollback triggers and cross-stack references · StackSets and drift detection across accounts and regions · Terraform providers, remote state in S3 with locking, and module layout · Importing resources that were created by hand · Pipelines that authenticate by OIDC federation instead of stored keys · Environment promotion and reviewing an infrastructure diff properly

  • Assignments: (1) Import a hand-built network into code, then destroy and recreate it identically; (2) Add a plan-and-approve gate to an infrastructure pipeline and demonstrate a rejected change
  • Capstone: Rebuild a complete environment from an empty account using code alone, with no console action left in the history
07Observability and day-two operationsLive & Interactive5 hrs · 2 assignments · 1 capstone

Knowing what happened, proving it, and being paged only when it matters. Metrics and logs that answer questions, alarms designed for a rota that hands over in the evening, and the audit surfaces — CloudTrail and Config — that turn a suspicion into a timeline. Operational automation is included because runbooks that nobody can execute at 02:00 are not runbooks.

Topics: CloudWatch metrics, custom metrics and the embedded metric format · Log groups, subscription filters and Logs Insights queries worth keeping · Alarms, composite alarms and thresholds that survive a handover · Dashboards a colleague in another timezone can read unaided · CloudTrail for API history, and Config rules and conformance packs · EventBridge rules driving operational automation · Systems Manager documents and automation runbooks · Building an incident timeline from the record rather than from memory

  • Assignments: (1) Reconstruct who changed a resource, when and from where, using CloudTrail alone; (2) Rewrite a noisy alarm set so it pages a human only when a user is affected
  • Capstone: Instrument one service end to end and hand its alerting and dashboards to another group without a walkthrough
08Security, encryption and data residencyLive & Interactive5 hrs · 2 assignments · 1 capstone

The module that decides whether a design survives review. Key management as policy rather than as a checkbox, secrets that rotate, and residency treated as something you enforce and evidence rather than something you promise. Detection services are covered for what they actually produce and who is expected to act on it.

Topics: KMS keys, key policies, grants and envelope encryption · Multi-region keys, and the replication constraints they impose · Secrets Manager and Parameter Store, rotation and access scoping · Region pinning with policy conditions, and where it can be bypassed · GuardDuty, Security Hub, Inspector and Macie findings and ownership · Reviewing external exposure across accounts with Access Analyzer · Assembling residency and control evidence an auditor will accept

  • Assignments: (1) Encrypt a workload with a customer-managed key and prove which principal can and cannot decrypt; (2) Enforce a region restriction with policy, then attempt to create a resource outside it and capture the denial
  • Capstone: Deliver a residency and encryption pack for one regulated workload: enforcement, evidence and the exception process
09Cost governance and unit economicsLive & Interactive5 hrs · 2 assignments · 1 capstone

The bill as an engineering signal. Where charges actually come from, including the transfer and request lines that never appear in a design review, tagging that supports attribution rather than decoration, and the commitment, architecture and lifecycle changes that reduce spend without reducing resilience. It ends with a review cadence engineers will attend.

Topics: Reading a bill: usage types, transfer charges and cross-zone traffic · Cost allocation tags, tag policies and enforcing them at creation · Cost Explorer, budgets, anomaly detection and cost categories · Savings Plans versus Reserved Instances versus Spot, and blast radius of each · Graviton migration and rightsizing from measured utilisation · Storage lifecycle, log retention and idle resource sweeps · Per-team and per-tenant showback, and NAT versus endpoint economics

  • Assignments: (1) Attribute one month of spend to teams by tag and name the three largest reducible items; (2) Model a commitment purchase against real usage and state the break-even point
  • Capstone: Produce a cost reduction plan with measured savings, a stated risk for each change, and no loss of resilience

Need this mapped to your stack?

We rebuild the agenda around the tools you actually run.

Request a custom agenda
# hands-on

Labs and capstones your engineers actually build

LAB · IDENTITY

Denied inside someone else's organisation

Assume a role into an account governed by a service control policy you cannot read, trigger a denial, then determine from CloudTrail and the policy simulator which layer refused the call.

iamorganizationscloudtrail
LAB · HYBRID

On-premises network to ap-south-1

Attach a simulated on-premises network to a Transit Gateway over VPN, resolve DNS in both directions, then break a return route and diagnose the asymmetric path from flow logs.

transit gatewayvpnroute 53
LAB · RESILIENCE

Lose an Availability Zone on purpose

Run a multi-AZ Auto Scaling group behind a load balancer, remove a zone from service and confirm capacity, health checks and the database failover behave as designed.

auto scalingmulti-azrds
LAB · RESIDENCY

Pin the data and prove it

Restrict a workload to the Mumbai region with policy conditions, encrypt it with a customer-managed key, attempt a prohibited action, then assemble the evidence pack from CloudTrail and Config.

kmsscpconfig
LAB · IAC

Adopt an environment nobody wrote down

Import a hand-built network, compute and storage stack into Terraform, reconcile the drift, then destroy and recreate the whole thing from code.

terraformimportdrift
CAPSTONE · COST

Attribute a month, then cut it

Tag an estate for attribution, produce a per-team spend report, model commitments and Graviton, apply changes and measure the delta on the same workload.

cost explorersavings plansgraviton
# ecosystem

The tools AWS sits next to

Terraform
CloudFormation
Kubernetes
Docker
Jenkins
GitLab CI
Ansible
Grafana
Datadog
Vault
Python (boto3)
Git

Who this is for

  • Cloud and platform engineers building or extending an estate in ap-south-1
  • Infrastructure and system administrators moving workloads off on-premises hardware
  • SREs accountable for availability, recovery objectives and incident evidence
  • Services and ER&D engineers who deliver into a customer's AWS Organizations
  • Security and compliance engineers reviewing identity, encryption and residency
  • Architects and engineering managers who own the cloud bill and the design decisions behind it

Pre-requisites

  • Comfortable on a Linux command line — files, permissions, packages and services
  • Working understanding of IP addressing, subnets, DNS, TCP ports and TLS
  • Some scripting exposure in any language, enough to read and modify a script
  • Familiarity with Git and a pull-request workflow
  • An AWS account per attendee — a personal free-tier account or a sandbox account from your landing zone
# pune

AWS training in Pune

Pune's AWS conversations are shaped by geography most other Indian cities do not share: the ap-south-1 region sits roughly 150 kilometres away in Mumbai, close enough that a dedicated circuit from a Pune office gives single-digit millisecond round trips. That makes hybrid architectures genuinely practical here — a database that has to stay on-premises for residency reasons with application tiers in the region, a Direct Connect leg with VPN failover, on-prem identity fronting cloud workloads — and those designs are what Pune buyers actually ask to be taught. Combined with the residency obligations carried by the banking, insurance and payments captives around Kharadi, Yerwada and Magarpatta, a batch here spends far more time on VPC and Transit Gateway design, PrivateLink, KMS key policy and evidence for an auditor than on launching an instance.

The second Pune audience is the product and SaaS bench in Baner, Balewadi, Viman Nagar and Kalyani Nagar, where the estate is already on AWS and the live question is unit economics: Savings Plans against Spot for build fleets, Graviton migration, S3 lifecycle and egress, and per-tenant cost attribution. A third pattern is specific to a services city — a large share of Pune engineers operate inside a customer's AWS Organizations, not their own, so cross-account role assumption, permission boundaries, service control policies and least privilege under a root someone else controls come up in local interviews far more often than they do in a product-only market.

Where we deliver onsite

KharadiMagarpattaBanerBalewadiHinjewadiYerwadaViman Nagar

Teams trained in Pune

CapgeminiInfosysWiproDeloitteVMware
# pricing

Straightforward pricing, quoted in INR

Every plan includes 1 year of full LMS access — not just this course, the entire DevOpsSchool LMS: 20+ courses, 50+ tools, videos, quizzes, assignments and projects.

Self-paced video

₹833/mo

Billed yearly at ₹9,996

Enroll now

1-on-1 mentorship

₹99,999

Full program, private instructor

Enroll 1-on-1

Corporate / private batch

8–30 engineers · custom agenda · onsite or online · PO and GST invoicing

Get a custom quote

Refunds. If we cancel or postpone a cohort, you get a full refund within 15 days. There is no money-back guarantee otherwise.

Terms. Course material remains licensed to the attendee. Read the terms.

Your data. We don't share it with third parties. Privacy policy.

Every attendee gets a verifiable certificate

  • Issued per attendee on completion
  • Verifiable at devopsschool.com/certificates
  • Hard copy available on request
  • Corporate batches receive an attendance and assessment report
DevOpsSchool

AWS Training

Certificate of completion

# feedback

What engineers say

4.4 / 5 from 26 reviews on Trustpilot.

★★★★★
Great learning experience from a very knowledgeable instructor with well-prepared course notes. The lab exercises on AWS instance work well to learn the hands-on side of the course.
Ando Gg · Trustpilot
★★★★★
The trainer (Rajesh) provided very good sessions on SRE profession. Not only hands-on learning on the tools but also SRE mindset.
Peter Wang · Trustpilot
★★★★★
Very good training session. Well explained from the basics to the complex concepts. Also tried to cover practicals and demos within the 3 hour sessions. The learning content and videos are of a great deal of help.
Sreekanth Kannoth · Trustpilot
★★★★★
Basics explanation was exemplary from Rajesh where he dealt with complicated topics to be simple. Great learning stuff personally for me.
Krishna Mohan Yelleti · Trustpilot
★★★★★
Very detailed explanation and has lots of patience in attending the questionnaire. Thanks again for your wonderful sessions.
Uttam Samudrala · Trustpilot
★★★★★
Good discussion, helped us to understand different tools in SRE.
Prashant Saxena · Trustpilot
# comparison

Why a named practitioner beats a marketplace listing

What mattersYouTube + blogsGeneric online courseFreelance marketplaceDevOpsSchool
Named practitionerNoRarelyVaries per bookingYes — same trainer each time
Production experienceUnknownUnknownUnverified20 years, named employers
Custom agendaNoNoSometimesBuilt from your stack
Onsite deliveryNoNoSometimesYes
Lab environmentNoneSandbox that expiresVariesYour own cloud — skill goes with you
AssessmentNoneQuizRarelyAssignments + capstone per module
Per-attendee certificatesNoSometimesRarelyYes
Corporate invoicingNoLimitedVariesPO and GST
Post-training supportNoneForum, time-limitedNoneLifetime forum access
# questions

Frequently asked

Our data has to stay in India. Can the labs run entirely in ap-south-1?
Yes — labs default to the Mumbai region, which is also the realistic choice for Pune workloads on latency grounds. We cover region-pinning with SCPs, KMS key residency, S3 replication constraints and how to evidence residency for an audit.
We work inside a client's AWS Organizations, not our own. Is that covered?
Yes, and it is a common Pune requirement. We cover cross-account role assumption, external IDs, permission boundaries, service control policy effects and how to debug an access denial when you cannot see the root account's policies.
Can you cover hybrid connectivity back to our on-premises estate?
Yes. Site-to-site VPN, Direct Connect with VPN failover, route propagation through Transit Gateway, DNS resolution across the boundary and the failure modes that show up only under asymmetric routing.
Can the agenda be rebuilt around the workloads we actually run?
Yes, and that is the normal case for a private batch. A discovery call establishes whether the account is yours or a customer's, which services are already in production, and whether hybrid connectivity, residency or cost is the priority — then the module list is reordered and reweighted around that.
What lab accounts do attendees need, and will the labs cost us anything?
Each attendee uses their own account — personal free tier or a sandbox from your landing zone — and we set budget alarms on day one. Most exercises stay inside free tier; NAT gateways, load balancers, Transit Gateway attachments and EKS control planes bill hourly, so those labs are time-boxed and torn down in session.
What size are batches, and how many days does a private AWS batch take?
Private corporate batches run 8 to 30 engineers; public cohorts are capped at 10. Four days covers identity, networking, compute and storage; five to six adds infrastructure as code, observability, residency and the cost module in full.
Do attendees get a certificate, and what if someone misses a day?
Every attendee receives a completion certificate verifiable at devopsschool.com/certificates, and corporate batches also get an attendance and assessment report. Sessions are recorded and available in the LMS for a year, so a missed day can be picked up; public-cohort attendees can also repeat that session in a later batch.
How do invoicing and refunds work?
Invoicing is in INR with GST from our Indian entity, against a purchase order where procurement needs one. If we cancel or postpone a cohort you receive a full refund within 15 days; there is no general money-back guarantee, and GST and gateway fees are not refunded.
Do you teach CloudFormation, CDK or Terraform?
CloudFormation and Terraform both, with the trade-off stated plainly: CloudFormation and StackSets for native drift detection and multi-account rollout, Terraform when the estate spans more than one provider. CDK is demonstrated rather than taught in depth. A private batch can standardise on whichever you already run.
Is this a Solutions Architect certification course?
No, though it covers most of the ground the Associate-level exam tests. The assessment is built on designs and working labs rather than question banks, and it goes further than the exam does into policy debugging, hybrid routing, residency evidence and cost. An exam-focused revision day can be added.

Still deciding?

Tell us the team, the stack and the timeline. You'll get a straight answer, not a sales sequence.

Talk to an advisor
# ready when you are

Book a AWS trainer — or ask a question first.

  • No spam, no drip sequence
  • Syllabus in 60 seconds
  • A human reply within one business day

Prefer to call or email?

More ways to reach us on the contact page.

Talk to an advisorRequest a quote