Security application services Flashcards
Protects web applications against common web attacks,
WAF Web Application Firewall
Protects against SQL, Cross Site Scripting
WAF
Deployed on EC2, and CloudFront as part of CDN to block malicious traffic
WAF
Managed DDoS protection service with always-on detection with paid and free plans
Shield
Free protection from frequent and common web attacks
Shield Standard
Advanced protection and 24/7 access to AWS experts for a fee
Shield Advanced
CloudFront, Route 53, Elastic Load Balancing, AWS Global Accelerator
Shield Advanced supported services
Receive real-time notifications of suspected DDoS incidents and assistance from AWS
Shield Advanced
Helps discover and protect sensitive data such as passports, social security numbers and credit cards on S3
Macie
Uses machine learning to evaluate S3 environment
Macie
Uncovers personally identifiable information (PII)
Macie
Assess, audit, and evaluate to view the configurations of your resources by creating a file in S3. Uses SNS to deliver notifications when changes occur
Config
Intelligent threat detection system that uncovers unauthorized behavior using machine learning
GuardDuty
Built-in detection for EC2, S3, and IAM
GuardDuty
Reviews CloudTrail, VPC Flow Logs, and DNS logs
GuardDuty