Amazon Inspector is a security service designed to help secure your EC2 instances against known vulnerabilities and threats. It is used to identify and notify you if any of these vulnerabilities exist within your EC2 fleet, in addition to identifying those that could also affect your applications running on your EC2 instances. Like Amazon CloudTrail, Inspector is also a managed service that only operates through an Amazon Inspector agent that is installed locally on the instances that you want to protect.
Once the agent is installed, it is possible to automatically run scheduled assessments that look for security weaknesses and flaws, using a series of predefined rules packages. These rules packages can consist of one or more of the following four categories:
- Center for Internet Security (CIS) Benchmarks: These are global standards that are used across the industry...