Thursday, November 23, 2023

CLOUD SECURITY ANALYST

 


As a cloud security analyst, key points to always remember:



How to monitor API calls- AWS cloud trail.

Cloud Trail provides an audit trail of API calls and user activities for inspection. It shows precise events and changes initiated on AWS resources which is critical for security analysis and meeting compliance needs.


How to monitor applications and performance-AWS cloud watch. CloudWatch provides operational visibility through system and application performance monitoring, collecting metrics, logging, and triggering actions based on defined alerts. It gives insight into overall infrastructure health


Where are logs stored- AWS cloud watch. Tools like CloudTrail, Config, VPC Flow Logs, API logs, and custom app logs can feed into CloudWatch.


Logs can be analyzed in CloudWatch Insights or sent to services like Elasticsearch for retention, metrics, dashboards, and complex search.

No comments:

Post a Comment

CONFIGURING A PHISHING CAMPAIGN IN MICROSOFT DEFENDER.

Configuring a phishing campaign in Microsoft Defender (specifically Microsoft Defender for Office 365) involves creating a simulated attack ...