Issue #56

Monday · February 07, 2022

πŸ₯— AWS security blogs

  • How to build a multi-Region AWS Security Hub analytic pipeline and visualize Security Hub data β€” AWS Security Hub is a service that gives you aggregated visibility into your security and compliance posture across multiple Amazon Web Services (AWS) accounts. By joining Security Hub with Amazon QuickSightβ€”a scalable, serverless, embeddable, machine learning-powered business intelligence (BI) service built for the cloudβ€”your senior leaders and decision-makers can use …
  • AWS cloud services adhere to CISPE Data Protection Code of Conduct for added GDPR assurance β€” French version German version I’m happy to announce that AWS has declared 52 services under the Cloud Infrastructure Service Providers Europe Data Protection Code of Conduct (CISPE Code). This provides an independent verification and an added level of assurance to our customers that our cloud services can be used in …
  • How to configure rotation windows for secrets stored in AWS Secrets Manager β€” AWS Secrets Manager now enables you to specify a rotation window for each secret stored. With this launch, you can continue to follow best practice of regularly rotating your secrets, while using the defined time window of your choice. With Secrets Manager, you can manage, retrieve, and rotate database credentials, …
  • Security practices in AWS multi-tenant SaaS environments β€” Securing software-as-a-service (SaaS) applications is a top priority for all application architects and developers. Doing so in an environment shared by multiple tenants can be even more challenging. Identity frameworks and concepts can take time to understand, and forming tenant isolation in these environments requires deep understanding of different tools …

πŸ› Reddit threads on r/aws

πŸ“Œ Newsletters

πŸ“Œ r/netsec

πŸ“Œ r/cloudsecurity

πŸ“Œ "AWS Security" on Google News

🧁 IAM permission changes

  • fis: 2 new actions β€” 2 new actions: GetTargetResourceType (get information about the specified resource type), ListTargetResourceTypes (list the resource types)
  • comprehend: 4 new actions β€” 4 new actions: DeleteResourcePolicy (remove policy on resource), DescribeResourcePolicy (read attached policy on resource), ImportModel (import a trained comprehend model), PutResourcePolicy (attach policy to resource)
  • medialive: 3 updated actions β€” 3 updated actions: BatchDelete (resources), BatchStart (resources), BatchStop (resources)

πŸͺ API changes

Get every AWS security change,
on a plate every Monday.

6,700+ engineers, builders and CISOs let us diff the AWS changelog every week.