Average Ratings 0 Ratings
Average Ratings 0 Ratings
Description
AWS Config is a service that allows for the assessment, auditing, and evaluation of the configurations of AWS resources. By continuously monitoring and documenting these configurations, Config facilitates the automation of evaluating recorded settings against desired benchmarks. Users can examine changes in configurations and the interrelationships between AWS resources, explore comprehensive histories of resource configurations, and assess compliance with their internal standards. This functionality streamlines processes related to compliance auditing, security evaluations, change management, and operational issue resolution. Furthermore, AWS Config serves as a key resource for conducting configuration audits and compliance checks for both AWS and external resources. Additionally, it allows for the integration and publication of configurations from third-party resources, including GitHub repositories, Microsoft Active Directory, or any on-premises servers, thereby enhancing the breadth of compliance oversight. Overall, the versatility and capabilities of AWS Config make it an essential tool for managing resource configurations effectively.
Description
Amazon Inspector serves as an automated service for security assessments that enhances the security and compliance posture of applications running on AWS. This service efficiently evaluates applications for potential exposure, vulnerabilities, and deviations from established best practices. Upon completing an assessment, Amazon Inspector generates a comprehensive list of security findings ranked by their severity levels. Users can access these findings either directly or through detailed assessment reports available via the Amazon Inspector console or API. The security assessments conducted by Amazon Inspector enable users to identify unwanted network accessibility of their Amazon EC2 instances, as well as any vulnerabilities present on those instances. Furthermore, assessments are structured around pre-defined rules packages that align with widely accepted security best practices and vulnerability definitions. To expedite mean time to recovery (MTTR), the service leverages over 50 sources of vulnerability intelligence, which aids in the rapid identification of zero-day vulnerabilities. This comprehensive approach ensures that organizations can maintain a robust security framework while efficiently addressing potential risks.
API Access
Has API
No
API Access
Has API
No
Integrations
AWS App Mesh
Yes
Alert Logic
Yes
Amazon EC2
No
Anstrex
Yes
CardinalOps
Yes
Certa
No
Chainguard
No
CorralData
Yes
DisruptOps
Yes
Ikigai
Yes
Integrations
AWS App Mesh
Yes
Alert Logic
Yes
Amazon EC2
Yes
Anstrex
No
CardinalOps
No
Certa
Yes
Chainguard
Yes
CorralData
No
DisruptOps
No
Ikigai
No
Pricing Details
$0.001 per rule evaluation
Free Trial
No
Free Version
No
Pricing Details
No price information available.
Free Trial
Yes
Free Version
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
Yes
Mac
Yes
Linux
Yes
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Customer Support
Business Hours
Yes
Live Rep (24/7)
Yes
Online Support
Yes
Customer Support
Business Hours
Yes
Live Rep (24/7)
No
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
Yes
Live Training (Online)
Yes
In Person
Yes
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
No
In Person
No
Vendor Details
Company Name
Amazon
Founded
1994
Country
United States
Website
aws.amazon.com/config/
Vendor Details
Company Name
Amazon
Founded
1994
Country
United States
Website
aws.amazon.com/inspector/
Product Features
Configuration Management
Access Control / Permissions
Yes
Application Deployment
Yes
Automated Provisioning
Yes
Infrastructure Automation
Yes
Node Management
Yes
Orchestration
Yes
Reporting Analytics / Visualization
Yes
Task Management
Yes
Product Features
Vulnerability Management
Asset Discovery
Yes
Asset Tagging
Yes
Network Scanning
Yes
Patch Management
Yes
Policy Management
Yes
Prioritization
No
Risk Management
Yes
Vulnerability Assessment
Yes
Web Scanning
Yes
Vulnerability Scanners
Asset Discovery
No
Black Box Scanning
No
Compliance Monitoring
No
Continuous Monitoring
No
Defect Tracking
No
Interactive Scanning
No
Logging and Reporting
No
Network Mapping
No
Perimeter Scanning
No
Risk Analysis
No
Threat Intelligence
No
Web Inspection
No