AWS CloudHSM | Compliance Flashcards
Which events are not logged in CloudTrail?
Compliance
AWS CloudHSM | Security, Identity & Compliance
CloudTrail does not include any of the HSM device or access logs. These are provided directly to your AWS account via CloudWatch Logs. See the CloudHSM User Guide for more details.
Which AWS compliance initiatives include CloudHSM?
Compliance
AWS CloudHSM | Security, Identity & Compliance
Please refer to the AWS Compliance site for more information about which compliance programs cover CloudHSM. Unlike other AWS services, compliance requirements regarding CloudHSM are often met directly by the FIPS 140-2 Level 3 validation of the hardware itself, rather than as part of a separate audit program.
Why is FIPS 140-2 Level 3 important?
Compliance
AWS CloudHSM | Security, Identity & Compliance
FIPS 140-2 Level 3 is a requirement of certain use cases, including document signing, payments, or operating as a public Certificate Authority for SSL certificates.