1/10
Looks like no tags are added yet.
Name | Mastery | Learn | Test | Matching | Spaced |
---|
No study sessions yet.
AWS responsibility
Security of the Cloud
Protecting infrastructure (hardware, software, facilities, and networking) that runs all the AWS services
AWS
Managed services like S3, DynamoDB, RDS, etc.
AWS
Customer responsibility
Security in the Cloud
For EC2 instance, customer is responsible for management of the guest OS (including security patches and updates), firewall & network configuration, IAM
You
Encrypting application data
You
Patch Management, Configuration Management, Awareness & Training
You and AWS
RDS
ā¢ Manage the underlying EC2 instance, disable SSH access
ā¢ Automated DB patching
ā¢ Automated OS patching
ā¢ Audit the underlying instance and disks & guarantee it functions
AWS
RDS
ā¢ Check the ports / IP / security group inbound rules in DBās SG
ā¢ In-database user creation and permissions
ā¢ Creating a database with or without public access
ā¢ Ensure parameter groups or DB is configured to only allow SSL connections
ā¢ Database encryption setting
You
S3
ā¢ Guarantee you get unlimited storage
ā¢ Guarantee you get encryption
ā¢ Ensure separation of the data between different customers ā¢ Ensure AWS employees canāt access your data
AWS
S3
ā¢ Bucket configuration
ā¢ Bucket policy / public setting
ā¢ IAM user and roles
ā¢ Enabling encryption
You