Issue #114
Monday · April 17, 2023
π₯ AWS security blogs
- AWS Security Profile: Ryan Dsouza, Principal Solutions Architect β In the AWS Security Profile series, I interview some of the humans who work in Amazon Web Services Security and help keep our customers safe and secure. This interview is with Ryan Dsouza, Principal Solutions Architect for industrial internet of things (IIoT) security.Β How long have you been at AWS β¦
- Scale your authorization needs for Secrets Manager using ABAC with IAM Identity Center β With AWS Secrets Manager, you can securely store, manage, retrieve, and rotate the secrets required for your applications and services running on AWS. A secret can be a password, API key, OAuth token, or other type of credential used for authentication purposes. You can control access to secrets in Secrets β¦
- Investigate security events by using AWS CloudTrail Lake advanced queries β This blog post shows you how to use AWS CloudTrail Lake capabilities to investigate CloudTrail activity across AWS Organizations in response to a security incident scenario. We will walk you through two security-related scenarios while we investigate CloudTrail activity. The method described in this post will help you with the β¦
- AWS Security Profile: Matt Luttrell, Principal Solutions Architect for AWS Identity β In the AWS Security Profile series, I interview some of the humans who work in Amazon Web Services Security and help keep our customers safe and secure. In this profile, I interviewed Matt Luttrell,Β Principal Solutions Architect for AWS Identity. How long have you been at AWS and what do you β¦
π Reddit threads on r/aws
π Newsletters
π Dev.to #aws, security
π "AWS Security" on Google News
π§ IAM permission changes
- mediaconnect: 22 new actions, 3 new resources β 22 new actions: AddBridgeOutputs (Grants permission to add outputs to an existing bridge), AddBridgeSources (Grants permission to add sources to an existing bridge), CreateBridge (Grants permission to create bridges), CreateGateway (Grants permission to create gateways), DeleteBridge (Grants permission to delete bridges), DeleteGateway (Grants permission to delete gateways), DeregisterGatewayInstance (Grants permission β¦
- ssm-contacts: 1 new action β 1 new action: ListPageResolutions (Grants permission to list the resolution path of an engagement)
- inspector2: 5 new actions β 5 new actions: BatchGetMemberEc2DeepInspectionStatus (Grants permission to delegated administrator to retrieve ec2 deep inspection status of member accounts), BatchUpdateMemberEc2DeepInspectionStatus (Grants permission to update ec2 deep inspection status by delegated administrator for its associated member accounts), GetEc2DeepInspectionConfiguration (Grants permission to retrieve ec2 deep inspection configuration for standalone accounts, delegated administrator and β¦
πͺ API changes
- Amazon Chime SDK Voice - 5 updated methods β This release adds tagging support for Voice Connectors and SIP Media Applications
- AWS MediaConnect - 20 new 7 updated methods β Gateway is a new feature of AWS Elemental MediaConnect. Gateway allows the deployment of on-premises resources for the purpose of transporting live video to and from the AWS Cloud.
- AWS Ground Station - 4 updated methods β AWS Ground Station Wideband DigIF GA Release