Security Flashcards
What is AWS Artifact?
Compliance docs
What does AWS Artifact do?
Provides compliance
When should you choose AWS Artifact?
Audit reports
What is AWS Audit Manager?
Audit automation
What does AWS Audit Manager do?
Manages audits
When should you choose AWS Audit Manager?
Audit compliance
What is AWS Certificate Manager (ACM)?
SSL/TLS management
What does ACM do?
Manages certificates
When should you choose ACM?
SSL certificates
What is AWS CloudHSM?
Hardware security
What does AWS CloudHSM do?
Manages HSMs
When should you choose AWS CloudHSM?
Encryption keys
What is Amazon Cognito?
Identity service
What does Amazon Cognito do?
Manages users
When should you choose Amazon Cognito?
App authentication
What is Amazon Detective?
Security analysis
What does Amazon Detective do?
Investigates issues
When should you choose Amazon Detective?
Security incidents
What is AWS Directory Service?
Managed directory
What does AWS Directory Service do?
Integrates AD
When should you choose AWS Directory Service?
AD integration
What is AWS Firewall Manager?
Firewall management
What does AWS Firewall Manager do?
Centralizes rules
When should you choose AWS Firewall Manager?
Firewall policies
What is Amazon GuardDuty?
Threat detection
What does Amazon GuardDuty do?
Monitors threats
When should you choose Amazon GuardDuty?
Threat alerts
What is AWS Identity and Access Management (IAM)?
Access control
What does IAM do?
Manages permissions
When should you choose IAM?
User access
What is AWS IAM Identity Center (AWS SSO)?
Single sign-on
What does AWS SSO do?
Centralizes access
When should you choose AWS SSO?
Unified access
What is Amazon Inspector?
Security assessment
What does Amazon Inspector do?
Analyzes security
When should you choose Amazon Inspector?
Vulnerability scans
What is AWS Key Management Service (AWS KMS)?
Encryption keys
What does AWS KMS do?
Manages keys
When should you choose AWS KMS?
Data encryption
What is Amazon Macie?
Data security
What does Amazon Macie do?
Protects data
When should you choose Amazon Macie?
Sensitive data
What is AWS Network Firewall?
Network security
What does AWS Network Firewall do?
Secures networks
When should you choose AWS Network Firewall?
Traffic filtering
What is AWS Resource Access Manager (AWS RAM)?
Resource sharing
What does AWS RAM do?
Shares resources
When should you choose AWS RAM?
Cross-account sharing
What is AWS Secrets Manager?
Secrets management
What does AWS Secrets Manager do?
Stores secrets
When should you choose AWS Secrets Manager?
Secrets rotation
What is AWS Security Hub?
Security posture
What does AWS Security Hub do?
Monitors security
When should you choose AWS Security Hub?
Security compliance
What is AWS Shield?
DDoS protection
What does AWS Shield do?
Mitigates attacks
When should you choose AWS Shield?
DDoS defense
What is AWS WAF?
Web firewall
What does AWS WAF do?
Filters traffic
When should you choose AWS WAF?
Web traffic security