Security Flashcards
Security
What service provides visibility into user & resource activity and helps you enable operational and risk auditing, governance, and compliance of your AWS account
CloudTrail
Security
What 4 pieces of informaiton does CloudTrail record
User
Account
Source IP
Timestamp
Security
What 2 use cases is CloudTrain good for
After-the-fact incident investigation
near real time intrusion detection
Security
What service acts as “CCTV for your AWS account”
CloudTrail
Security
What service provides free DDOS protection against layer 3 & 4 attacks
Shield
Security
What service provides protection against http/https (layer 7) attacks
AWS WAF
Security
AWS WAF has 3 opperating modes
what are they?
(1) Allow all but …
(2) Deny all but …
(3) Count all that match …
Security
What service provides threat detection using AI to determine a baseline for your account
Guard Duty
Security
AWS Guard Duty monitors 3 things
What are they?
CloudTrail Logs
VPC Flow Logs
DNS Logs
Security
Service that provides a single-pane-of-glass for all firewall rules accross accounts
Firewall Manager
Security
Service that searches for PII within your S3 buckets
Macie
Security
Automated security assesment service providing continuous scanning of either network’s (VPC’s) or hosts (EC2’s)
Amazon Inspector
Security
When would you choose to use Parameter Store over secrets manager
Its free
Dont need key rotation
Security
When would you choose to use Secrets Manager over Parameter Store
You need key rotation
You need PW Generation from cloudformation
You have more than 10k secrets
Security
How can you allow access to single files within a S3 bucket securely
Use a presigned URL
Security
How can you allow access to a group of files within a S3 bucket securely
Use cookies
Security
What is the term given to the unique identifier for an AWS resource
ARN
Security
What service can you use to create, manage and deploy & automatically renew your SSL certs
Certificate Manager
Security
Certificate Manager supports SSL certs for 3 AWS services
what are they
ELB
CloudFront
API Gateway
Security
What service allows you to Continually audit your AWS usage to simplify risk and compliance assessment and map your compliance requirements to AWS usage data with prebuilt and custom frameworks and automated evidence collection.
AWS Audit Manager
Security
What service is a source of all your compliance reports
iso, pci….
AWS Artifact
Security
What service provides Authentication and Authorization
like Okta
Amazon Cognito
Security
What service is great for root-cause analysis of security events & for linking interactions between users and resources
Amazon Detective
Security
What service provides a physical firewall to filter traffic before it gets to your VPC
AWS Network Firewall
Security
What service acts as a single-pane-of-glass to view all your security alerts accross multiple accounts and services
AWS Security Hub
Security
Service to automate the detection of fraud using machine learning and artificial intelligence
Fraud Detector