Sec & Arch Services Flashcards
Service that enables you to continually monitor your
resources for adherence to best practices
AWS Config
Portal that provides self-service access to AWS
compliance reports and agreements you may have with
AWS
AWS Artifact
Fully-managed service that continually monitors your
AWS account and resources for potential malicious
behavior and anomalies
Amazon GuardDuty
Service that controls access to AWS resources. This is
where you create IAM users, IAM groups, and roles.
Policies are attached to identities for permission to
access resources.
AWS Identity and Access Management (IAM)
User directory service for custom applications that can
also enable access to AWS resources for your custom
applications
Amazon Cognito
Hybrid-cloud storage service that enables companies to
take advantage of cloud storage on their local networks
AWS Storage Gateway
Automated data transfer service that efficiently transfer data from your local network into AWS
AWS DataSync
Fully-managed serverless extract, transform, and load (ETL) service
AWS Glue
Big-data cloud-based tool suite using popular open
source tools including Apache Spark, Apache Hive,
Presto, and many others.
Amazon EMR
Data workflow orchestration service that supports
multiple AWS services providing extract, transform, and
load (ETL) capabilities
AWS Data Pipeline
Service that enables serverless querying of data stored
within Amazon S3 using standard SQL queries
Amazon Athena
Fully-managed Business Intelligence (BI) service
enabling self-service data dashboards for data stored in
the cloud
Amazon Quicksight
Managed search service for custom applications
Amazon CloudSearch
Computer vision service powered by Machine Learning
that can detect objects in images and video
Amazon Rekognition
Text translation service powered by Machine Learning
that can translate text (either streaming or in batch) into
many different languages. It also provides language
detection.
Amazon Translate
Audio transcription service powered by Machine
Learning that can transcribe audio (either streaming or
in batch) in many different languages
Amazon Transcribe
Managed Distributed Denial of Service (DDoS)
protection service for apps running on AWS
AWS Shield
Data classification, protection, and monitoring service
powered by machine learning for Amazon S3 data
Amazon Macie
Automated security assessment service for EC2
instances
Amazon Inspector
EC2 capability that manages a group of EC2 instances
that have rules for automated scaling and management
which includes health checks for each member of the
group
Auto Scaling Group
Service that supports routing traffic across multiple
targets including EC2 instances, Lambda functions, as
well as other targets on AWS
Elastic Load Balancing (ELB)
Firewall-like controls for EC2 instances within a VPC that
controls access for inbound and outbound traffic.
Instances can have multiple security groups
Security Groups
Control for inbound and outbound traffic within a
specific subnet in a VPC. Traffic can be allowed or
denied based on custom rules
Network Access Control Lists (ACL)
Service that supports an encrypted tunnel into a VPC.
This can support either site-to-site (from your data
center into the VPC) or client (from a single computer
into the VPC)
AWS VPN
Service that manages secrets (such as passwords, keys,
tokens, etc…) used in your custom applications on AWS.
It also supports auto-rotation of credentials on
supported AWS services
AWS Secrets Manager
Service for offering your organization’s pre-defined IT
offerings to other members of your organization in a
self-service portal on AWS
AWS Service Catalog
Catalog of third-party software offerings that makes it
easy to launch pre-defined solutions onto your AWS
account from these vendors
AWS Marketplace
Fully-managed source control service using Git
AWS CodeCommit
Fully-managed build and continuous integration service
on AWS
AWS CodeBuild
Fully-managed deployment service for applications
running on Amazon EC2, AWS Fargate, AWS Lambda,
and on-premise servers
AWS CodeDeploy
Fully-managed continuous delivery service on AWS for
automating building, deploying, and testing. Integrates
with other developer services
AWS CodePipeline
Workflow tool for automatic creation of a continuous
delivery pipeline for a custom application using the
other developer services
AWS CodeStar