How do you protect your security on an AWS server?
This is the answer to your cloud cybersecurity challenges protect your data with the service called GuardDuty.
So what is GuardDuty what does it do? GuardDuty monitors egress traffic logs from NAT/VPC gateway and/or can we import proxy logs (eg squid) to the tool to identify outgoing anomalous behaviour? VPC flow logs and DNS logs is monitored. So this means there is a focus on AWS account logs security.
Guard duty main focus is on security of your AWS account so the logs that (VPC Flow logs, DNS logs and Cloudtrail) are the key logs that it looks and analyses
Security Hub is where you could bring in external 3rd party tools and integrate them.
- Log in to post comments
Comments