In this chapter, we went through the following core principles of a security solution in any IT environment, and understood how they are tightly coupled with each other:
- Logging
- Auditing
- Risk
- Compliance
We learnt about various services, tools, and features available in AWS to make our environment compliant and remain compliant. We looked at logging options available for major AWS services and how logging can be automated in multiple ways.
We learnt how we can use AWS CloudTrail along with S3 and CloudWatch Logs to automate storage, analysis, and notification of log files. We deep dived into best practices, features, use cases, and so on for AWS CloudTrail to understand logging at an extensive scale in AWS.
Furthermore, we looked into auditing in AWS, various services available for AWS users to enforce and ensure compliance, providing guardrails, and freedom to users...