AWS Config is another key service when it comes to compliance, and it has a close relationship with AWS CloudTrail.
The service focuses on the importance of resource management within your organization. In a typical on-premises environment, you are often required to have a full understanding of your assets within the data centers, as well as knowing their configuration status and the current version of the software. Much of this is required for audits that are normally reviewed a number of times a year. This would often include the requirement to have an awareness of resource dependencies and communication paths. Trying to operate your own manual method of gaining this data within your AWS account, with its continuous fluctuation and scaling of resources, could prove both time consuming and a never-ending task, and this is why AWS Config was introduced. AWS Config...