Security and Compliance Flashcards
What is AWS Artifact?
A portal that provides compliance documents and agreements
What services help provide Network security?
Shield, WAF and Network Firewall
What is Cognito?
Allows web and mobile users to be IAM users
How can a user investigate security issues or current suspicious activities?
Detective - note identifies cause of issue not identifies threat
What is Config?
A tool to record configurations and changes over time helping to manage compliance
What is Macie?
A tool that uses ML to discover and protect sensitive data
What is Security Hub?
A dashboard for security and compliance acting as a hub for alerts and allowing the automation of security checks
How might a AWS user get a history of API calls?
CloudTrail
How might a AWS user protect against DDoS attacks?
Shield
How might a AWS user protect incoming and outbound traffic for a VPC?
Network Firewall
How might a user get access to compliance reports?
Artifact
What is Audit Manager?
It allows the user to map user compliance requirements with usage data
How can a user identify treats to security?
GuardDuty - note treats not issues
What is Inspector?
A security assessment on EC2 instances and containers
What is Cloud HSM?
HSM = Hardware Security Module - encryption hardware