IoT Device Defender
As the name suggests, this service is a fully managed device security service that helps in securing the IoT devices that are onboarded and provisioned in the AWS IoT platform.
The AWS IoT Device Defender service continuously audits the IoT devices against IoT configurations that you define to make sure the devices are kept secure and are not deviating from the security best practices.
So, broadly, we can say that the AWS IoT Device Defender service offers the following features:
- Audit device configuration for security vulnerabilities: AWS IoT, continuously or on demand, audits the IoT device-related resources, such as a device's X.509 certificates, IoT policies, connection settings, and account settings, against the AWS IoT security best practices. To give an example, the audit checks whether the principle of least privilege is used or not, whether there is a shared certificate used with IoT devices or not, whether conflicting MQTT client IDs...