AWS Monitoring, Compliance, and Auditing

0.0(0)
Studied by 0 people
call kaiCall Kai
Locked
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/33

encourage image

There's no tags or description

Looks like no tags are added yet.

Last updated 7:58 PM on 7/28/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai
Chat

No analytics yet

Send a link to your students to track their progress

34 Terms

1
New cards

Amazon CloudWatch

AWS hub for monitoring, logging, and infrastructure observability.

2
New cards

CloudWatch Metric

The actual data point or measurement over time.

3
New cards

CloudWatch Namespace

The container where metrics live together.

4
New cards

CloudWatch Dimension

Key-value tags giving a metric context, max 30 per metric.

5
New cards

CloudWatch Custom Metrics

Created for data not provided out-of-the-box, like RAM usage.

6
New cards

Metric Streams

Continually streams metrics to external or internal destinations with low latency.

7
New cards

CloudWatch Log Structure

Log Groups (application level) containing Log Streams (instance level).

8
New cards

CloudWatch Log Retention

Ranges from 1 day to 10 years, or never expires.

9
New cards

CloudWatch Subscription Filters

Delivers log events immediately to targets like Kinesis or Lambda.

10
New cards

CloudWatch S3 Export

Batch export using CreateExportTask; can take up to 12 hours.

11
New cards

CloudWatch Logs Insights

Purpose-built interactive query engine to analyze log data.

12
New cards

Default EC2 Metrics

Hypervisor-level only (CPU, Disk IO, Network); no OS-level metrics.

13
New cards

CloudWatch Unified Agent

Recommended agent collecting both system-level metrics and log files.

14
New cards

Unified Agent OS Metrics

Collects RAM, Disk space, detailed Disk IO, and System/Process metrics.

15
New cards

CloudWatch Alarm States

OK, INSUFFICIENT_DATA, and ALARM.

16
New cards

Composite Alarms

Combines multiple alarms using AND/OR conditions to reduce noise.

17
New cards

EC2 Auto-Recovery

Recovers instance on replacement hardware if System Status Check fails.

18
New cards

Network Synthetic Monitor

Agentless monitor for ICMP/TCP traffic over Direct Connect or VPN.

19
New cards

AWS Site-to-Site VPN

Secure, encrypted tunnel over the public internet to AWS VPC.

20
New cards

AWS Direct Connect

Dedicated, physical fiber-optic connection bypassing the public internet.

21
New cards

Amazon EventBridge

Event-driven bus routing system events or scheduled tasks to targets.

22
New cards

EventBridge Schema Registry

Infers JSON schemas from events and generates code bindings.

23
New cards

Container Insights

Aggregates metrics and logs for ECS, EKS, Fargate, and Kubernetes.

24
New cards

Lambda Insights

Delivers diagnostic and system metrics via a Lambda Layer.

25
New cards

Contributor Insights

Analyzes logs to highlight "Top-N" contributors or heavy talkers.

26
New cards

Application Insights

SageMaker-powered dashboards monitoring EC2 applications and related resources.

27
New cards

AWS CloudTrail

Service for account governance, compliance, and auditing of API calls.

28
New cards

CloudTrail Event Types

Management Events (enabled by default) and Data Events (disabled by default).

29
New cards

CloudTrail Insights

Baselines management activity to automatically flag operational anomalies.

30
New cards

AWS Config

Service for auditing, tracking configuration changes, and evaluating compliance.

31
New cards

AWS Config Remediation

Automates fixes using Systems Manager (SSM) Automation Documents.

32
New cards

CloudWatch Primary Question

"How is my application performing?"

33
New cards

CloudTrail Primary Question

"Who made that API call or change?"

34
New cards

AWS Config Primary Question

"Is my infrastructure compliant with rules over time?"