Security, Identity & Compliance Flashcards

1
Q

Is your go-to, central resource for compliance-related information that matters to you. It provides on-demand access to AWS’ security and compliance reports and select online agreements.

A

“AWS Artifact”
• Online portal that provides access to security and compliance documentation
• Can be accessed for audit purposes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Is a service that lets you easily provision, manage, and deploy Secure Sockets Layer/Transport Layer Security (SSL/TLS) certificates for use with AWS services and your internal connected resources.

A
"AWS Certificate Manager"
• Issues SSL certificates for Https communication with website
• Integrates with 
	• Route 53 
	• Cloud front
• These are free
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

___________ enables you to build flexible, cloud-native directories for organizing hierarchies of data along multiple dimensions.

A

“Amazon Cloud Directory”
• Cloud based directory services
• Online LDAP directory service, can have data in multiple dimensions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

__________ for Microsoft Active Directory, also known as AWS Managed Microsoft AD, enables your directory-aware workloads and AWS resources to use managed Active Directory in the AWS Cloud

A

“Amazon Directory Services”
• Fully managed
• Microsoft active directory service

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Is a cloud-based hardware security module (HSM) that enables you to easily generate and use your own encryption keys on the AWS Cloud.

A

“AWS CloudHSM”
• Dedicated hardware security module in AWS cloud
• Allows you to retrieve corporate and regulatory compliance
• Reduces cost as you do not need to have your own HSM

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

__________ enables you to securely control access to AWS services and resources for your users.

A

“Amazon Identity and Access Management (IAM)”
• Allows you to manage user access to AWS services and resources
• Users and group of users have individual permissions that allow/deny access to resources
* Using this you can manage :
– IAM users and their access
– IAM roles and their permissions
– Fderated users and their permissions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Amazon Organizations

A
  • Policy based management for multiple accounts

* Central management of access management across the enterprise

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Is an automated security assessment service that helps improve the security and compliance of applications deployed on AWS.

A

“Amazon Inspector”
• Automated security assessment service
• Identify vulnerability or areas of improvement

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Is a managed Distributed Denial of Service (DDoS) protection service that safeguards web applications running on AWS.

A

“AWS Shield”
• Protection against DDOS attacks
• Standard version is implemented on all AWS accounts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

AWS Shield Advanced Features

A
  • 24x7 access to the AWS DDoS Response Team (DRT)
  • Protection against DDoS related spikes in your EC2, ELB, CloudFront, and Route 53 charges
  • Additional detection and mitigation against large and sophisticated DDoS attacks
  • Near real-time visibility into attacks, and integration with AWS WAF, a web application firewall
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

This service gives you control over which traffic to allow or block to your web application by defining customizable web security rules

A

AWS WAF (Web Application Firewall)

  • Protect your web applications from common web exploits that could affect application availability, compromise security, or consume excessive resources.
  • Create custom rules for your specific application such that it block common attack patterns, such as SQL injection or cross-site scripting
How well did you know this?
1
Not at all
2
3
4
5
Perfectly