Sign In Start Free Trial
Account

Add to playlist

Create a Playlist

Modal Close icon
You need to login to use this feature.
  • Book Overview & Buying AWS Security Cookbook
  • Table Of Contents Toc
  • Feedback & Rating feedback
AWS Security Cookbook

AWS Security Cookbook

By : Heartin Kanikathottu, Kanikathottu
4.8 (8)
close
close
AWS Security Cookbook

AWS Security Cookbook

4.8 (8)
By: Heartin Kanikathottu, Kanikathottu

Overview of this book

As a security consultant, securing your infrastructure by implementing policies and following best practices is critical. This cookbook discusses practical solutions to the most common problems related to safeguarding infrastructure, covering services and features within AWS that can help you implement security models such as the CIA triad (confidentiality, integrity, and availability), and the AAA triad (authentication, authorization, and availability), along with non-repudiation. The book begins with IAM and S3 policies and later gets you up to speed with data security, application security, monitoring, and compliance. This includes everything from using firewalls and load balancers to secure endpoints, to leveraging Cognito for managing users and authentication. Over the course of this book, you'll learn to use AWS security services such as Config for monitoring, as well as maintain compliance with GuardDuty, Macie, and Inspector. Finally, the book covers cloud security best practices and demonstrates how you can integrate additional security services such as Glacier Vault Lock and Security Hub to further strengthen your infrastructure. By the end of this book, you'll be well versed in the techniques required for securing AWS deployments, along with having the knowledge to prepare for the AWS Certified Security – Specialty certification.
Table of Contents (12 chapters)
close
close

Setting up and using Amazon GuardDuty

In this recipe, we will learn to set up and use Amazon GuardDuty. GuardDuty analyzes data from sources such as CloudTrail, VPC flow logs, and DNS logs, and uses machine learning, anomaly detection, and integrated threat intelligence to find malicious activities and unauthorized behavior. GuardDuty can be integrated with CloudWatch and SNS to raise alarms and send notifications. GuardDuty can also aggregate data from multiple accounts.

Getting ready

We need a working AWS account.

How to do it...

We can enable GuardDuty for our account...

Unlock full access

Continue reading for free

A Packt free trial gives you instant online access to our library of over 7000 practical eBooks and videos, constantly updated with the latest in tech
bookmark search playlist download font-size

Change the font size

margin-width

Change margin width

day-mode

Change background colour

Close icon Search
Country selected

Close icon Your notes and bookmarks

Delete Bookmark

Modal Close icon
Are you sure you want to delete it?
Cancel
Yes, Delete

Confirmation

Modal Close icon
claim successful

Buy this book with your credits?

Modal Close icon
Are you sure you want to buy this book with one of your credits?
Close
YES, BUY