AWS Security. Video Edition

Video description

In Video Editions the narrator reads the book while the content, figures, code listings, diagrams, and text appear on the screen. Like an audiobook that you can also watch as a video.

Running your systems in the cloud doesn’t automatically make them secure. Learn the tools and new management approaches you need to create secure apps and infrastructure on AWS.

In AWS Security you’ll learn how to:

  • Securely grant access to AWS resources to coworkers and customers
  • Develop policies for ensuring proper access controls
  • Lock-down network controls using VPCs
  • Record audit logs and use them to identify attacks
  • Track and assess the security of an AWS account
  • Counter common attacks and vulnerabilities

Written by security engineer Dylan Shields, AWS Security provides comprehensive coverage on the key tools and concepts you can use to defend AWS-based systems. You’ll learn how to honestly assess your existing security protocols, protect against the most common attacks on cloud applications, and apply best practices to configuring identity and access management and virtual private clouds.

About the Technology
AWS provides a suite of strong security services, but it’s up to you to configure them correctly for your applications and data. Cloud platforms require you to learn new techniques for identity management, authentication, monitoring, and other key security practices. This book gives you everything you’ll need to defend your AWS-based applications from the most common threats facing your business.

About the Book
AWS Security is the guide to AWS security services you’ll want on hand when you’re facing any cloud security problem. Because it’s organized around the most important security tasks, you’ll quickly find best practices for data protection, auditing, incident response, and more. As you go, you’ll explore several insecure applications, deconstruct the exploits used to attack them, and learn how to react with confidence.

What's Inside
  • Develop policies for proper access control
  • Securely assign access to AWS resources
  • Lock-down network controls using VPCs
  • Record audit logs and use them to identify attacks
  • Track and assess the security of an AWS account


About the Reader
For software and security engineers building and securing AWS applications.

About the Author
Dylan Shields is a software engineer working on Quantum Computing at Amazon. Dylan was one of the first engineers on the AWS Security Hub team.

Quotes
A comprehensive book on AWS security by someone who knows what he’s talking about.
- Peter Singhof, NTT DATA Germany

Provides the conceptual framework to understand cloud security. Dylan’s experience is evident in his clear and practical explanations.
- Amado Gramajo, NASDAQ

Learn AWS security through real-world scenarios.
- Sanjeev Jaiswal, Lifesight

There are few authors who know as much about AWS security as Dylan Shields.
- Victor Durán, Kaldi AI

Publisher resources

View/Submit Errata

Table of contents

  1. Chapter 1. Introduction to AWS security
  2. Chapter 1. Cloud-native security tools
  3. Chapter 1. A new way of operating
  4. Chapter 1. Conclusion
  5. Chapter 1. Summary
  6. Chapter 2. Identity and access management
  7. Chapter 2. Using common patterns in AWS IAM
  8. Chapter 2. Attribute-based access control with tags
  9. Chapter 2. Summary
  10. Chapter 3. Managing accounts
  11. Chapter 3. Integration with existing access management systems
  12. Chapter 3. Summary
  13. Chapter 4. Policies and procedures for secure access
  14. Chapter 4. Applying least privilege access control
  15. Chapter 4. Choosing between short- and long-lived credentials
  16. Chapter 4. Reviewing IAM permissions
  17. Chapter 4. Summary
  18. Chapter 5. Securing the network: The virtual private cloud
  19. Chapter 5. Traffic routing and virtual firewalls
  20. Chapter 5. Separating private networks
  21. Chapter 5. Summary
  22. Chapter 6. Network access protection beyond the VPC
  23. Chapter 6. Blocking malicious traffic with AWS Web Application Firewall
  24. Chapter 6. Protecting against distributed denial of service attacks using AWS Shield
  25. Chapter 6. Integrating third-party firewalls
  26. Chapter 6. Summary
  27. Chapter 7. Protecting data in the cloud
  28. Chapter 7. Securing data at rest
  29. Chapter 7. Securing data in transit
  30. Chapter 7. Data access logging
  31. Chapter 7. Data classification
  32. Chapter 7. Summary
  33. Chapter 8. Logging and audit trails
  34. Chapter 8. Tracking resource configuration changes
  35. Chapter 8. Centralizing application logs
  36. Chapter 8. Summary
  37. Chapter 9. Continuous monitoring
  38. Chapter 9. Host vulnerability scanning
  39. Chapter 9. Detecting threats in logs
  40. Chapter 9. Summary
  41. Chapter 10. Incident response and remediation
  42. Chapter 10. Incident response planning
  43. Chapter 10. Automating incident response
  44. Chapter 10. Summary
  45. Chapter 11. Securing a real-world application
  46. Chapter 11. Strong authentication and access controls
  47. Chapter 11. Protecting data
  48. Chapter 11. Web application firewalls
  49. Chapter 11. Implementing authentication and authorization end to end
  50. Chapter 11. Summary

Product information

  • Title: AWS Security. Video Edition
  • Author(s): Dylan Shields
  • Release date: September 2022
  • Publisher(s): Manning Publications
  • ISBN: None