Security, Identity, and Compliance on AWS
AWS Security, Identity, & Compliance services
AWS Identity & Access Management (IAM)
Securely manage access to services and resources.
AWS Single Sign-On
Cloud single sign-on (SSO) service.
Amazon Cognito
Identify management for your apps.
AWS Directory Service
Host and manage active directory.
AWS Resource Access Manager
Simple, secure service to share AWS resources.
AWS Security Hub
Unified security and compliance center.
Amazon GuardDuty
Managed threat detection service.
Amazon Inspector
Analyze application security.
Amazon Detective
Investigate potential security issues.
AWS Shield
DDoS protection.
AWS Web Application Firewall (WAF)
Filter malicious web traffic.
AWS Firewall Manager
Central manangement of firewall rules.
Amazon Macie
Discover and protect your sensitive data at scale
AWS Key Management Service (KMS)
Managed creation and control of encryption keys.
AWS CloudHSM
Hardware-based key storage for regulatory compliance.
AWS Certificate Manager
Provision, manage, and deploy SSL/TLS certificates.
AWS Secrets Manager
Rotate, manage, and retrieve secrets.
AWS Artifact
On-demand access to AWS' compliance reports.
AWS Security, Identity, & Compliance services
| Category | Use cases | AWS service |
|---|---|---|
| Identity & access management | Manage user access and encryption keys | AWS Identity & Access Management (IAM) |
| Cloud single-sign-on (SSO) service |
AWS Single Sign-On | |
| Managed Microsoft Active Directory |
AWS Directory Service | |
| Identity management for your apps | Amazon Cognito | |
| Rotate, manage and retrieve secrets |
AWS Secrets Manager | |
| Simple, secure service to share AWS resources | AWS Resource Access Manager |
|
| Detective controls |
Unified security and compliance center | AWS Security Hub |
| Managed threat detection service | Amazon GuardDuty | |
| Analyze application security | Amazon Inspector | |
| Discover and protect your sensitive data at scale | Amazon Macie | |
| Investigate potential security issues | Amazon Detective | |
| Infrastructure protection | DDoS protection | AWS Shield |
| Filter malicious web traffic | AWS Web Application Firewall (WAF) | |
| Central management of firewall rules | AWS Firewall Manager | |
| Data protection | Key storage and management |
AWS Key Management Service (KMS) |
| Hardware based key storage for regulatory compliance |
AWS CloudHSM | |
| Provision, manage, and deploy public and private SSL/TLS certificates | AWS Certificate Manager |
Customers
"We love it when we are able to simply provide extra security without any inconvenience."
- Roger Zou on Amazon GuardDuty
Snap Inc.