What is a DDOS attack?
Distributed denial of service
Flooding your server with requests
What is a Layer 4 DDOS attack, and what else is it known by?
What is a common Layer 7 attack?
Floods, GET/POST requests
What is CloudTrail for?
What does CloudTrail Log?
What is AWS Shield?
Free DDOS protection
Layer 3 and 4 attacks
What does AWS Shield Advanced give you? How much is it?
What Protects against Layer 7 attacks?
What protects against Layer 3 and 4 attacks?
What is AWS WAF?
What can you control for using WAF?
What is Guard Duty?
How can you use AI and automation to protect your AWS account
Guard Duty -→ Lambda!
What is AWS Macie for?
Automated monitoring S3 buckets for PII
Can send alerts
What is AWS Inspector?
What types of assessments does AWS Inspector do?
What is KMS
Key management system
Managed service you use to generate keys.
Starts with the customer managed Key
What is Secrets Manager? How is it accessed?
What happens when you enable rotation in secrets manager?
What is Parameter Store
What are the limits in Parameter store?
How can you temporarily share S3 objects?
How can you share an S3 object in a shared bucket?
Pre-signed URL
How can you grant access to multiple objects in a private bucket?
Pre-signed cookies
What can you apply policies to?