AWS Security Cookbook: Practical solutions for managing security policies, monitoring, auditing, and compliance with AWS

AWS Security Cookbook: Practical solutions for managing security policies, monitoring, auditing, and compliance with AWS

by Heartin Kanikathottu
AWS Security Cookbook: Practical solutions for managing security policies, monitoring, auditing, and compliance with AWS

AWS Security Cookbook: Practical solutions for managing security policies, monitoring, auditing, and compliance with AWS

by Heartin Kanikathottu

eBook

$26.99  $35.99 Save 25% Current price is $26.99, Original price is $35.99. You Save 25%.

Available on Compatible NOOK devices, the free NOOK App and in My Digital Library.
WANT A NOOK?  Explore Now

Related collections and offers


Overview

Secure your Amazon Web Services (AWS) infrastructure with permission policies, key management, and network security, along with following cloud security best practices




Key Features



  • Explore useful recipes for implementing robust cloud security solutions on AWS


  • Monitor your AWS infrastructure and workloads using CloudWatch, CloudTrail, config, GuardDuty, and Macie


  • Prepare for the AWS Certified Security-Specialty exam by exploring various security models and compliance offerings



Book Description



As a security consultant, securing your infrastructure by implementing policies and following best practices is critical. This cookbook discusses practical solutions to the most common problems related to safeguarding infrastructure, covering services and features within AWS that can help you implement security models such as the CIA triad (confidentiality, integrity, and availability), and the AAA triad (authentication, authorization, and availability), along with non-repudiation.






The book begins with IAM and S3 policies and later gets you up to speed with data security, application security, monitoring, and compliance. This includes everything from using firewalls and load balancers to secure endpoints, to leveraging Cognito for managing users and authentication. Over the course of this book, you'll learn to use AWS security services such as Config for monitoring, as well as maintain compliance with GuardDuty, Macie, and Inspector. Finally, the book covers cloud security best practices and demonstrates how you can integrate additional security services such as Glacier Vault Lock and Security Hub to further strengthen your infrastructure.






By the end of this book, you'll be well versed in the techniques required for securing AWS deployments, along with having the knowledge to prepare for the AWS Certified Security – Specialty certification.




What you will learn



  • Create and manage users, groups, roles, and policies across accounts


  • Use AWS Managed Services for logging, monitoring, and auditing


  • Check compliance with AWS Managed Services that use machine learning


  • Provide security and availability for EC2 instances and applications


  • Secure data using symmetric and asymmetric encryption


  • Manage user pools and identity pools with federated login



Who this book is for



If you are an IT security professional, cloud security architect, or a cloud application developer working on security-related roles and are interested in using AWS infrastructure for secure application deployments, then this Amazon Web Services book is for you. You will also find this book useful if you're looking to achieve AWS certification. Prior knowledge of AWS and cloud computing is required to get the most out of this book.


Product Details

ISBN-13: 9781838827427
Publisher: Packt Publishing
Publication date: 02/27/2020
Sold by: Barnes & Noble
Format: eBook
Pages: 440
File size: 27 MB
Note: This product may take a few minutes to download.

About the Author

Heartin Kanikathottu is an author, architect, and tech evangelist with over 12 years of IT experience. He has worked for companies including VMware, IG Infotech, Software AG, SAP Ariba, American Express, and TCS. His degrees include a B-Tech in computer science, an MS in cloud computing, and an M-Tech in software systems. He has over 10 professional certifications in the areas of the cloud, security, coding, and design from providers such as AWS, Pivotal, Oracle, Microsoft, IBM, and Sun. His blogs on computer science, the cloud, and programming have followers from countries across the globe. He mentors others and leads technical sessions at work, meetups, and conferences. He likes reading and maintains a big library of technical, fictional, and motivational books.

Table of Contents

Table of Contents
  1. Managing AWS Accounts with IAM and Organizations
  2. Securing Data on S3 with Policies and Techniques
  3. User Pools and Identity Pools with Cognito
  4. Key Management with KMS and CloudHSM
  5. Network Security with VPC
  6. Working with EC2 Instances
  7. Web Security Using ELBs, CloudFront, and WAF
  8. Monitoring with CloudWatch, CloudTrail, and Config
  9. Compliance with GuardDuty, Macie, and Inspector
  10. Additional Services and Practices for AWS Security
From the B&N Reads Blog

Customer Reviews