Book Image

Mastering AWS Security

By : Albert Anthony
Book Image

Mastering AWS Security

By: Albert Anthony

Overview of this book

Mastering AWS Security starts with a deep dive into the fundamentals of the shared security responsibility model. This book tells you how you can enable continuous security, continuous auditing, and continuous compliance by automating your security in AWS with the tools, services, and features it provides. Moving on, you will learn about access control in AWS for all resources. You will also learn about the security of your network, servers, data and applications in the AWS cloud using native AWS security services. By the end of this book, you will understand the complete AWS Security landscape, covering all aspects of end - to -end software and hardware security along with logging, auditing, and compliance of your entire IT environment in the AWS cloud. Lastly, the book will wrap up with AWS best practices for security.
Table of Contents (10 chapters)

AWS Security Audit Checklist

As an auditing best practice, ensure that security audits are performed periodically for your AWS account to meet compliance and regulatory requirements. To begin with, use AWS Trusted Advisor to audit security for your AWS account. Apart from periodic activity, an audit should be carried out in case of the following events:

  • Changes in your organization
  • One or more AWS services are no longer used
  • If there is a change in the software or hardware configuration for your resources
  • If there is a suspicious activity detected

The following is a list of AWS controls to be audited for security:

  • Governance
  • Network configuration and management
  • Asset configuration and management
  • Logical access control
  • Data encryption
  • Security logging and monitoring
  • Security incident response
  • Disaster recovery
  • Inherited controls

Along with this checklist, there are various...