AWS Security Best Practices 2
AWS Security Best Practices 2
AWS Security Best Practices 2
Security GRC
Data Security
App Security
Platform Security
Infrastructure Security
Physical Security
AWS Shared Responsibility Model
AWS Compliance Certifications and Accreditations
Concerns About AWS Security
• Utilize the built-in AWS services to assist with backups & restoration
• RDS instances are automatically backed up (default 7 days, up to 35 days)
• EBS snapshots are incremental backups stored on S3
• Use S3 Bucket Policies to control account and user-level access to your S3 files
• S3 Versioning, MFA delete, S3 Logs – bucket logging, S3 event notifications
• S3 Lifecycle policies can automatically migrate older files to Glacier
• Glacier can be used for long-term archives within vaults, but it is slow and expensive
to retrieve
• Advanced Security Best Practices Masterclass • AWS Well Architected Framework Security Pillar – Nov ‘17
• https://www.youtube.com/watch?v=zU1x5SfKEzs • https://d0.awsstatic.com/whitepapers/architecture/AWS-
Security-Pillar.pdf
• Watch recordings of 2017 AWS re:Invent conference security,
compliance & identity sessions • AWS Security Best Practices – August 2016
• https://www.youtube.com/playlist?list=PLhr1KZpdzukcGVzIVFTy- • https://d0.awsstatic.com/whitepapers/aws-security-best-
j358ZoK9cvrF practices.pdf
• AWS Security by Design (SbD) • AWS: Risk and Compliance, May 2017
• https://aws.amazon.com/compliance/security-by-design/ • https://d0.awsstatic.com/whitepapers/compliance/AWS_Risk_an
d_Compliance_Whitepaper.pdf
• AWS Security Whitepapers – AWS Security Center
• AWS Cloud Adoption Framework Security Perspective – June
• http://aws.amazon.com/security/ 2016
• Introduction to AWS Security - July 2015 • https://d0.awsstatic.com/whitepapers/AWS_CAF_Security_Persp
ective.pdf
• https://d0.awsstatic.com/whitepapers/Security/Intro_to_AWS_S
ecurity.pdf
Questions and Answers