Security, Identity, and Compliance on AWS
AWS Security, Identity, & Compliance services
Amazon Cognito
Identify management for your apps.
AWS Directory Service
Host and manage active directory.
AWS Identity & Access Management (IAM)
Manage user access and encryption keys.
AWS Resource Access Manager
Simple, secure service to share AWS resources.
AWS Secrets Manager
Rotate, manage, and retrieve secrets.
AWS Single Sign-On
Cloud single sign-on (SSO) service.
AWS Security Hub
Unified security and compliance center.
Amazon GuardDuty
Managed threat detection service.
Amazon Inspector
Analyze application security.
Amazon Macie
Discover, classify, and protect your data.
Amazon Detective
Investigate potential security issues.
AWS Shield
DDoS protection.
AWS Web Application Firewall (WAF)
Filter malicious web traffic.
AWS Firewall Manager
Central manangement of firewall rules.
AWS Key Management Service (KMS)
Managed creation and control of encryption keys.
AWS CloudHSM
Hardware-based key storage for regulatory compliance.
AWS Certificate Manager
Provision, manage, and deploy SSL/TLS certificates.
AWS Artifact
On-demand access to AWS' compliance reports.
AWS Security, Identity, & Compliance services
| Category | Use cases | AWS service |
|---|---|---|
| Identity & access management | Manage user access and encryption keys | AWS Identity & Access Management (IAM) |
| Cloud single-sign-on (SSO) service |
AWS Single Sign-On | |
| Managed Microsoft Active Directory |
AWS Directory Service | |
| Identity management for your apps | Amazon Cognito | |
| Rotate, manage and retrieve secrets |
AWS Secrets Manager | |
| Simple, secure service to share AWS resources | AWS Resource Access Manager |
|
| Detective controls |
Unified security and compliance center | AWS Security Hub |
| Managed threat detection service | Amazon GuardDuty | |
| Analyze application security | Amazon Inspector | |
| Discover, classify and protect your data | Amazon Macie | |
| Investigate potential security issues | Amazon Detective | |
| Infrastructure protection | DDoS protection | AWS Shield |
| Filter malicious web traffic | AWS Web Application Firewall (WAF) | |
| Central management of firewall rules | AWS Firewall Manager | |
| Data protection | Key storage and management |
AWS Key Management Service (KMS) |
| Hardware based key storage for regulatory compliance |
AWS CloudHSM | |
| Provision, manage, and deploy public and private SSL/TLS certificates | AWS Certificate Manager |
Customers
"We love it when we are able to simply provide extra security without any inconvenience."
- Roger Zou on Amazon GuardDuty
Snap Inc.