Regularly checking for compliance within our account and being notified if anything is not compliant is an important step toward keeping our account secure. In this chapter, we will learn about some services within AWS that can help us in achieving security by checking compliance, with the help of additional intelligence and rules. We will learn about Amazon GuardDuty, Amazon Macie, and Amazon Inspector, which use machine learning and advanced algorithms to help us in checking for compliance.
This chapter will cover the following recipes:
- Setting up and using Amazon GuardDuty
- Aggregating findings from multiple accounts in GuardDuty
- Setting up and using Amazon Macie
- Setting up and using Amazon Inspector
- Creating a custom Inspector template