Security and Compliance Flashcards
What are the security and compliance sections?
Shared Responsibility ModelWell-Architected FrameworkSecurityEncryptionSecrets Management
What are the Security services?
Identity and Access Management (IAM) Web Application Firewall (WAF) Shield Macie Config GuardDuty Inspector Artifact Cognito
What are the encvryption services?
KMS (Key Management Service)CloudHSM (Hardware Security Module)
What is the shared responsibility model?
Customer Security in the CloudAWS Security of the Cloud
shared responsibility model - firewall configuration
Customer
shared responsibility model - Data center security for the physical building
AWS
shared responsibility model - Encryption of EBS volumes?
Customer
Shared responsibility model - Language versions of Lambda
AWS
Shared responsibility model - Taking database backups and RDS
Customer - it’s your data
Shared responsibility model - Updating the firmware on the underlying EC2 host
AWS
Shared responsibility model - Ensuring data is encrypted at rest
Customer
Shared responsibility model - Managing the network infrastructure architecture
AWS
Shared responsibility model - Patching the guest operating system for EC2
Customer
Shared responsibility model - And physically destroying storage media at the end of life
AWS
How do you report abuse of AWS resources?If you suspect there’s been a security breachand or abuse of your AWS resources,
Contact the AWS Trust & Safety team using the Report Amazon AWS abuse form or by contacting abuse@amazonaws.com.
What are the two components of IAM
UsersGroups