From the course: AWS Administration: Security Operations

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Automate compliance with Amazon Inspector

Automate compliance with Amazon Inspector - Amazon Web Services (AWS) Tutorial

From the course: AWS Administration: Security Operations

Start my 1-month free trial

Automate compliance with Amazon Inspector

- [Instructor] If you've lots of infrastructure that is EC2 instances running at AWS you may want to use Amazon Inspector to inspect your resources, inspect your software, and let you know when there's issues. Amazon Inspector provides vulnerability assessment for the compute instance itself, and the installed software. We can optionally use an agent to get even more detail, but we can do some things with Inspector that are agentless. When Inspector does its analysis after its enabled and after your instances have been tagged to do an analysis it can perform a network assessment. And, this could identify ports and services that are reachable outside of the instances VPC. These reachability rules can be run without the Inspector agent being installed. If you find that there's ports and services that are readily available and accessible outside of the VPC, you could then swing into action and update your subnet security,…

Contents