Role-based certification paths

Choose the job role first, then follow the right certifications, lessons, labs, and proof.

These paths turn the broad certification catalog into guided journeys for real learner goals. Each role maps to existing tracks, exam order, practical labs, timeline phases, and portfolio evidence.

Role-path navigatorRole target to certifications, labs, and portfolio proofROLE-PATH NAVIGATORLIVE SIGNALguided replayPATHFRESHFITRoleCertsLabsProofRole target to certifications, labs, and portfolio proofOWNED DASKEREL VIDEO-STYLE MOTION GRAPHIC

Optional voiceover / Narration

French audio requires a French voice installed in the browser or Windows. Until one is available, Daskerel will show the French transcript rather than read it with an English voice.

12

role paths

30

mapped tracks

69

certification steps

48

role labs

Learners aiming for solutions architect, cloud architect, or technical design roles.

Cloud Architect

Employer matching0 Current0 Retiring soon5 Needs review

Build from cloud fundamentals into professional architecture decisions across AWS, Azure, Google Cloud, governance, resilience, migration, and executive tradeoffs.

Certification order

  1. 01 AWS Certified Solutions Architect - Associate
  2. 02 AWS Certified Solutions Architect - Professional
  3. 03 Microsoft Azure Solutions Architect Expert
  4. 04 Google Professional Cloud Architect
  5. 05 Oracle Cloud Infrastructure Architect Professional

Core lab focus

  • Multi-account landing zone review
  • Hybrid network and DNS architecture
  • Resilience, backup, and disaster recovery design
  • Cost, security, and operations architecture decision record

Timeline

Foundation

Weeks 1-2

Cloud concepts, identity, networking, compute, storage, and shared responsibility.

Associate architecture

Weeks 3-6

Scenario-based AWS, Azure, and Google service selection with labs.

Professional design

Weeks 7-10

Landing zones, migration, governance, resilience, executive tradeoffs, and mock exams.

Portfolio proof

Weeks 11-12

Architecture review pack, diagrams, decision matrix, and interview story.

Recommended tracks

Portfolio proof

  • Professional architecture decision matrix
  • Landing zone diagram with identity, network, logging, policy, and workload boundaries
  • Recovery and migration plan with risk, cost, and validation notes

Role capstone

Secure Multi-Account Landing Zone

Design a governed cloud foundation with identity, network segmentation, logging, policy, cost controls, workload boundaries, and migration readiness.

Open capstone project

Learners targeting cloud security, SOC cloud analyst, DevSecOps, or security architecture roles.

Cloud Security Engineer

Employer matching0 Current1 Retiring soon5 Needs review

Move from security fundamentals into cloud IAM, detection, governance, DevSecOps, incident response, and security architecture certifications.

Certification order

  1. 01 CompTIA Security+
  2. 02 AWS Certified Security - Specialty
  3. 03 Microsoft Security Operations Analyst Associate SC-200
  4. 04 Microsoft Cybersecurity Architect Expert SC-100
  5. 05 Google Professional Security Engineer
  6. 06 Certified Kubernetes Security Specialist

Core lab focus

  • Cloud IAM least-privilege review
  • SIEM detection and incident timeline
  • CI/CD security gate with SAST, SCA, IaC, and container scanning
  • Zero Trust architecture review

Timeline

Security baseline

Weeks 1-2

Threats, identity, logging, network security, and incident response basics.

Cloud controls

Weeks 3-5

IAM, key management, secrets, audit logs, posture management, and policy.

Detection and DevSecOps

Weeks 6-9

SIEM/SOAR, vulnerability response, supply-chain security, and runtime evidence.

Architecture review

Weeks 10-12

Security design, governance, case studies, mock tests, and portfolio package.

Recommended tracks

Security / Cloud / SpecialistCyber Security EngineerPrepare for modern security roles covering IAM, network security, vulnerability management, monitoring, incident response, cloud security, and governance.AWS / Azure / Google Cloud / SIEM / SpecialistCloud Security Operations EngineerOperate cloud security with Zero Trust, IAM attack paths, SIEM/SOAR, detection engineering, vulnerability response, secrets management, and incident runbooks.OWASP / Cloud Native / DevSecOps / ProfessionalDevSecOps and Application Security EngineerSecure the software delivery lifecycle with OWASP, API security, threat modeling, SAST, DAST, SCA, IaC scanning, container security, SBOMs, signing, CI/CD gates, and release evidence.Microsoft Azure / Microsoft Fabric / ProfessionalAzure Network Security and Data SpecialistPrepare for advanced Microsoft role certifications across networking, cybersecurity architecture, Fabric analytics, Fabric data engineering, database administration, hybrid Windows Server, virtual desktop, and SAP workloads.Google Cloud / Google Workspace / ProfessionalGoogle Security Operations Workspace and Data CertificationsCover newer and specialist Google certification paths for Security Operations Engineer, Workspace Administrator, Data Practitioner, and professional cloud operations.CompTIA / FoundationCompTIA IT, Cloud, and Security FoundationsPrepare for vendor-neutral CompTIA certifications with practical IT support, networking, cloud, Linux, security, operations, troubleshooting, and evidence-led career readiness.

Portfolio proof

  • Security baseline mapped to identity, network, workload, data, and monitoring controls
  • Incident response timeline with detection, containment, and recovery evidence
  • Secure delivery pipeline with signed artifact and exception workflow

Role capstone

Cloud Security Incident Response

Investigate a simulated cloud credential exposure with containment, evidence review, detection improvement, stakeholder update, and prevention plan.

Open capstone project

Learners moving into DevOps, cloud automation, release engineering, or SRE-adjacent work.

DevOps Engineer

Employer matching0 Current0 Retiring soon6 Needs review

Prepare for CI/CD, infrastructure as code, containers, automation, observability, release governance, and production operations roles.

Certification order

  1. 01 GitHub Foundations or GitHub Actions
  2. 02 HashiCorp Terraform Associate
  3. 03 AWS Certified Developer - Associate
  4. 04 AWS Certified CloudOps Engineer - Associate
  5. 05 AWS Certified DevOps Engineer - Professional
  6. 06 Docker Certified Associate
  7. 07 HashiCorp Terraform Professional

Core lab focus

  • CI/CD pipeline with approval, rollback, and evidence
  • Terraform module, state, drift, and policy lab
  • Container build, scan, sign, and deploy workflow
  • Release incident and rollback runbook

Timeline

Delivery foundations

Weeks 1-2

Git, branching, CI basics, artifacts, environments, and release safety.

Automation

Weeks 3-6

Terraform, CloudFormation, CDK, secrets, state, and reusable modules.

Containers and operations

Weeks 7-9

Docker, registries, observability, health checks, and rollback.

Professional readiness

Weeks 10-12

Mock exams, incident stories, pipeline proof, and portfolio review.

Recommended tracks

Portfolio proof

  • Repository with pipeline runs, environment gates, deployment logs, and rollback notes
  • Infrastructure module with plan output, state decision, policy check, and cleanup proof
  • Container evidence pack with Dockerfile, scan result, SBOM, registry tag, and runtime validation

Role capstone

Production DevOps Delivery Platform

Build a release workflow with source control, CI/CD checks, infrastructure as code, container evidence, approvals, rollback, and observability.

Open capstone project

Learners targeting platform engineering, Kubernetes administration, or cloud-native operations roles.

Platform Engineer

Employer matching0 Current0 Retiring soon5 Needs review

Build Kubernetes, Linux, automation, GitOps, policy, observability, and internal developer platform readiness.

Certification order

  1. 01 Linux Foundation Kubernetes and Cloud Native Associate
  2. 02 Certified Kubernetes Administrator
  3. 03 Certified Kubernetes Application Developer
  4. 04 Certified Kubernetes Security Specialist
  5. 05 Red Hat OpenShift Administration

Core lab focus

  • Kubernetes cluster operations and troubleshooting
  • GitOps deployment with policy and rollback
  • Observability baseline for workloads and nodes
  • OpenShift or platform service catalog design

Timeline

Runtime foundations

Weeks 1-3

Linux, containers, networking, storage, and Kubernetes primitives.

Cluster operations

Weeks 4-7

Scheduling, services, ingress, storage, RBAC, upgrades, and troubleshooting.

Platform capabilities

Weeks 8-10

GitOps, policy, observability, secrets, developer workflows, and security.

Exam and portfolio

Weeks 11-12

Performance-style practice, incident simulations, and platform proof.

Recommended tracks

Portfolio proof

  • Cluster operations notebook with commands, outputs, and troubleshooting decisions
  • GitOps repository with deployment, policy, rollback, and environment evidence
  • Platform capability map for onboarding applications safely

Role capstone

Kubernetes Platform Service

Design an internal platform service with Kubernetes deployment patterns, GitOps, policy, observability, secrets, and developer handoff.

Open capstone project

Learners targeting FinOps, cloud governance, cost management, or cloud operations analyst roles.

FinOps Analyst

Employer matching0 Current0 Retiring soon4 Needs review

Connect cost visibility, budgets, tagging, unit economics, optimization, chargeback, SaaS spend, and engineering tradeoffs.

Certification order

  1. 01 FinOps Certified Practitioner
  2. 02 FinOps Certified Professional
  3. 03 AWS Cloud Financial Management learning path
  4. 04 Azure Cost Management and governance skills
  5. 05 Google Cloud cost optimization skills

Core lab focus

  • Tagging and allocation model
  • Budget alert and anomaly triage
  • Rightsizing and commitment recommendation review
  • FOCUS billing data analysis

Timeline

Cost foundations

Weeks 1-2

Billing concepts, tagging, allocation, budgets, and cloud economics.

Optimization

Weeks 3-5

Rightsizing, commitments, storage lifecycle, data transfer, and waste reduction.

Governance

Weeks 6-8

Showback, chargeback, team reporting, SaaS spend, and policy controls.

Executive proof

Weeks 9-10

Savings recommendation, risk note, owner plan, and KPI dashboard.

Recommended tracks

Portfolio proof

  • Cost allocation workbook with tag quality and ownership rules
  • Optimization backlog with savings, risk, owner, rollback, and validation signal
  • Executive FinOps report using unit cost and business outcome language

Role capstone

FinOps Optimization Review

Create an optimisation report with allocation, budgets, waste findings, rightsizing, commitment planning, risk notes, and executive recommendations.

Open capstone project

Learners targeting data engineer, analytics engineer, ML engineer, AI engineer, or LLMOps roles.

Data and AI Engineer

Employer matching0 Current0 Retiring soon6 Needs review

Prepare for cloud data engineering, analytics platforms, machine learning, generative AI, governance, and LLMOps work.

Certification order

  1. 01 AWS Certified Data Engineer - Associate
  2. 02 AWS Certified Machine Learning Engineer - Associate
  3. 03 AWS Certified AI Practitioner
  4. 04 AWS Certified Generative AI Developer - Professional
  5. 05 Microsoft Fabric Analytics Engineer Associate
  6. 06 Google Professional Data Engineer
  7. 07 Databricks Data Engineer
  8. 08 Google Professional Machine Learning Engineer

Core lab focus

  • Batch and streaming data pipeline
  • Lakehouse governance and quality checks
  • Model deployment and monitoring workflow
  • RAG or AI assistant evaluation with risk controls

Timeline

Data foundations

Weeks 1-3

Storage, databases, SQL, pipelines, orchestration, and data quality.

Cloud analytics

Weeks 4-7

Warehouses, lakehouses, streaming, governance, lineage, and performance.

AI engineering

Weeks 8-10

ML services, prompt workflows, RAG, evaluation, monitoring, and responsible AI.

Certification proof

Weeks 11-12

Mock domains, weak areas, project evidence, and interview stories.

Recommended tracks

AWS / Azure / Google Cloud / Snowflake / SpecialistCloud Data EngineerDesign cloud data platforms with ingestion, storage zones, Spark, streaming, warehouses, orchestration, data quality, governance, privacy, and cost controls.Databricks / Snowflake / Microsoft Fabric / Google Cloud / AWS / Azure / ProfessionalData Platform CertificationsPrepare for cloud data platform certifications across Databricks, Snowflake, Microsoft Fabric, AWS, Azure, Google Cloud, analytics engineering, governance, and ML platform foundations.AWS / Microsoft / Google / Oracle / IBM / Databricks / Responsible AI / ProfessionalAI Governance LLMOps and Responsible AI CertificationsPrepare learners for generative AI, AI governance, responsible AI, LLMOps, model evaluation, RAG, agents, safety, compliance, and cloud AI certification paths.AWS / ProfessionalAWS Cloud Engineering SpecialistExtend AWS architecture knowledge into hands-on developer, operations, security, DevOps, data, AI, and production support skills aligned to high-demand AWS role certifications.Microsoft Azure / Power Platform / ProfessionalMicrosoft Cloud Engineering SpecialistBuild Microsoft cloud implementation depth across Azure development, security, DevOps, data engineering, monitoring, Power Platform automation, and Applied Skills-style project evidence.Google Cloud / ProfessionalGoogle Cloud Engineering SpecialistDeepen Google Cloud readiness across Cloud Developer, DevOps/SRE, Security, Network, Database, Workspace, Gemini, and Apigee-style API engineering paths.

Portfolio proof

  • Data pipeline with source, transform, quality, lineage, and dashboard evidence
  • Model or RAG workflow with evaluation, security, privacy, and monitoring notes
  • Governance checklist for access, retention, sensitivity, and auditability

Role capstone

Data and AI Governance Workflow

Build a governed data and AI workflow with ingestion, transformation, quality checks, model or RAG evaluation, monitoring, privacy, and risk controls.

Open capstone project

Learners targeting network engineer, cloud network engineer, hybrid connectivity, or infrastructure roles.

Network and Hybrid Cloud Engineer

Employer matching0 Current0 Retiring soon6 Needs review

Build routing, switching, cloud networking, hybrid connectivity, network security, automation, and provider-specific network certification readiness.

Certification order

  1. 01 Cisco CCNA
  2. 02 Cisco CCNP Enterprise
  3. 03 AWS Certified Advanced Networking - Specialty
  4. 04 Azure Network Engineer Associate AZ-700
  5. 05 Google Professional Cloud Network Engineer
  6. 06 Oracle Cloud Infrastructure Networking Professional

Core lab focus

  • Subnetting, routing, and firewall troubleshooting
  • Hybrid cloud connectivity design
  • DNS, load balancing, and private access review
  • Network automation and evidence capture

Timeline

Network fundamentals

Weeks 1-4

OSI, TCP/IP, subnetting, routing, switching, wireless, and troubleshooting.

Cloud networking

Weeks 5-8

VPC/VNet design, firewalls, NAT, DNS, private endpoints, and load balancing.

Hybrid and automation

Weeks 9-11

VPN, direct connectivity, route propagation, assurance, and API-driven changes.

Readiness review

Week 12

Topology drills, failure analysis, mock domains, and portfolio cleanup.

Recommended tracks

Portfolio proof

  • Hybrid topology diagram with route tables, DNS, security boundaries, and failover notes
  • Troubleshooting packet or command evidence with root cause and fix
  • Network change plan with validation and rollback

Role capstone

Hybrid Cloud Network Design

Design and troubleshoot a hybrid network with IP plan, routing, DNS, private access, firewall controls, packet evidence, and cloud connectivity.

Open capstone project

Career switchers and early-career learners aiming for support, junior cloud, or operations roles.

Cloud Support Engineer

Employer matching0 Current1 Retiring soon4 Needs review

Turn IT, Linux, networking, cloud fundamentals, troubleshooting, security, and customer communication into entry-level cloud operations readiness.

Certification order

  1. 01 CompTIA A+
  2. 02 CompTIA Network+
  3. 03 AWS Certified Cloud Practitioner
  4. 04 AWS Certified CloudOps Engineer - Associate
  5. 05 Microsoft Azure Fundamentals
  6. 06 CompTIA Cloud+
  7. 07 Linux+ or Kubernetes and Cloud Native Associate

Core lab focus

  • Troubleshooting ticket and customer update
  • Linux command and log review
  • Cloud identity, storage, compute, and network checks
  • Security baseline and escalation note

Timeline

IT foundations

Weeks 1-3

Operating systems, tickets, networking basics, security hygiene, and communication.

Cloud basics

Weeks 4-6

AWS, Azure, or Google fundamentals, billing, IAM, compute, storage, and network checks.

Operations habits

Weeks 7-9

Linux, logs, monitoring, backup, incidents, and escalation evidence.

Job readiness

Weeks 10-12

Mock tests, support scenarios, CV statements, and interview stories.

Recommended tracks

Portfolio proof

  • Resolved ticket pack with symptom, checks, root cause, fix, and customer update
  • Cloud support checklist covering identity, compute, network, storage, logs, and billing
  • Entry-level portfolio with screenshots, command output, and lessons learned

Role capstone

Cloud Support Ticket Portfolio

Resolve a realistic support ticket pack covering identity, compute, storage, network, logs, billing, security baseline, and customer communication.

Open capstone project

Learners targeting cloud developer, backend developer, serverless developer, or application modernization roles.

Cloud Application Developer

Employer matching0 Current0 Retiring soon5 Needs review

Build secure cloud-native applications with APIs, serverless services, managed databases, CI/CD, identity, observability, and release evidence.

Certification order

  1. 01 AWS Certified Developer - Associate
  2. 02 Microsoft Azure AI Cloud Developer transition pathway
  3. 03 Google Associate Cloud Engineer
  4. 04 GitHub Actions
  5. 05 AWS Certified Generative AI Developer - Professional

Core lab focus

  • Serverless API with identity and data persistence
  • Managed database integration and migration note
  • Application observability and error triage
  • Secure release pipeline and rollback evidence

Timeline

Application foundations

Weeks 1-2

APIs, auth, databases, cloud SDKs, and deployment basics.

Cloud-native build

Weeks 3-6

Serverless, containers, managed data services, secrets, and integration testing.

Production readiness

Weeks 7-9

CI/CD, observability, rollback, performance, and secure configuration.

Portfolio proof

Weeks 10-12

Project documentation, evidence pack, certification domains, and interview story.

Recommended tracks

Portfolio proof

  • Application repository with API, data, identity, tests, and deployment evidence
  • Observability record with logs, metrics, trace or error triage notes
  • Secure release evidence with rollback, secrets handling, and change notes

Role capstone

Production Cloud Application

Build and release a secure cloud-native application with an API, managed data, identity, automated tests, deployment controls, observability, and rollback evidence.

Open capstone project

Learners aiming for SRE, observability engineer, production operations, or reliability-focused platform roles.

SRE and Observability Engineer

Employer matching0 Current0 Retiring soon5 Needs review

Prepare for reliability engineering, monitoring, SLOs, incident response, capacity, automation, and platform operations roles.

Certification order

  1. 01 Linux Foundation Kubernetes and Cloud Native Associate
  2. 02 Certified Kubernetes Administrator
  3. 03 AWS Certified CloudOps Engineer - Associate
  4. 04 Google Professional Cloud DevOps Engineer
  5. 05 HashiCorp Terraform Associate

Core lab focus

  • Service-level objective and error-budget model
  • Observability dashboard with alert triage
  • Incident simulation and post-incident review
  • Capacity and resilience validation

Timeline

Reliability foundations

Weeks 1-2

SLIs, SLOs, error budgets, monitoring, alert hygiene, and incident roles.

Observability build

Weeks 3-6

Metrics, logs, traces, dashboards, synthetic checks, and runbooks.

Incident and resilience

Weeks 7-10

Failure drills, capacity, rollback, postmortems, and automation.

Readiness proof

Weeks 11-12

Reliability evidence pack, mock domains, and interview scenarios.

Recommended tracks

Portfolio proof

  • SLO and error-budget pack with alert policy and escalation notes
  • Observability dashboard evidence with triage and remediation steps
  • Incident report with timeline, customer impact, root cause, and prevention actions

Role capstone

Service Reliability and Observability Review

Operate a simulated production service using SLIs, SLOs, error budgets, dashboards, alerts, incident response, capacity evidence, and prevention actions.

Open capstone project

Learners targeting cloud governance, risk, compliance, audit, security assurance, or platform control roles.

Cloud Governance, Risk, and Compliance Analyst

Employer matching0 Current1 Retiring soon4 Needs review

Connect cloud governance, policy, risk assessment, evidence collection, audit readiness, data protection, and management reporting.

Certification order

  1. 01 CompTIA Security+
  2. 02 Microsoft Security, Compliance, and Identity Fundamentals SC-900
  3. 03 Microsoft Cybersecurity Architect Expert SC-100
  4. 04 AWS Certified Security - Specialty
  5. 05 FinOps Certified Practitioner

Core lab focus

  • Cloud control register and evidence map
  • Policy exception and risk acceptance workflow
  • Data protection and access review pack
  • Audit-ready management report

Timeline

Governance baseline

Weeks 1-2

Risk language, cloud controls, shared responsibility, privacy, and audit evidence.

Control operations

Weeks 3-6

Policy, access reviews, exceptions, logging, backup, and vendor-aligned evidence.

Assurance reporting

Weeks 7-9

Risk registers, remediation plans, control owners, and stakeholder communication.

Portfolio assurance

Weeks 10-12

Audit pack, management report, interview scenarios, and certification mapping.

Recommended tracks

Portfolio proof

  • Cloud control register mapped to evidence, owner, risk, and review frequency
  • Risk acceptance and exception workflow with approval and expiry notes
  • Management-ready assurance report with gaps, remediation, and residual risk

Role capstone

Cloud Governance Assurance Pack

Create an audit-ready cloud assurance pack with control ownership, evidence mapping, risk assessment, policy exceptions, access review, data protection, and management reporting.

Open capstone project

Learners targeting migration engineer, cloud consultant, infrastructure modernization, or hybrid transformation roles.

Cloud Migration Engineer

Employer matching0 Current0 Retiring soon4 Needs review

Plan and execute migration discovery, landing zones, dependency mapping, data movement, cutover, validation, rollback, and post-migration operations.

Certification order

  1. 01 AWS Certified Solutions Architect - Associate
  2. 02 Microsoft Azure Administrator Associate AZ-104
  3. 03 Google Associate Cloud Engineer
  4. 04 AWS Certified Solutions Architect - Professional
  5. 05 Google Professional Cloud Architect

Core lab focus

  • Application discovery and dependency map
  • Migration wave and cutover plan
  • Data migration validation and rollback model
  • Post-migration operations handover

Timeline

Discovery

Weeks 1-2

Application inventory, dependencies, risk, owners, data, and migration strategy.

Foundation and movement

Weeks 3-6

Landing zone, network, identity, data movement, and workload migration patterns.

Cutover and validation

Weeks 7-10

Testing, performance, rollback, security validation, and stakeholder communication.

Operate and prove

Weeks 11-12

Handover, monitoring, cost review, lessons learned, and portfolio evidence.

Recommended tracks

Portfolio proof

  • Migration assessment with dependency map, wave plan, risk, and owner model
  • Cutover and rollback plan with validation checks and communication timeline
  • Post-migration operations report with monitoring, cost, and support handover

Role capstone

Cloud Migration Wave Delivery

Plan and validate a cloud migration wave from discovery through landing-zone readiness, dependency mapping, data movement, cutover, rollback, and operations handoff.

Open capstone project