Average Ratings 0 Ratings
Average Ratings 0 Ratings
Description
AWS Config is a service that allows for the assessment, auditing, and evaluation of the configurations of AWS resources. By continuously monitoring and documenting these configurations, Config facilitates the automation of evaluating recorded settings against desired benchmarks. Users can examine changes in configurations and the interrelationships between AWS resources, explore comprehensive histories of resource configurations, and assess compliance with their internal standards. This functionality streamlines processes related to compliance auditing, security evaluations, change management, and operational issue resolution. Furthermore, AWS Config serves as a key resource for conducting configuration audits and compliance checks for both AWS and external resources. Additionally, it allows for the integration and publication of configurations from third-party resources, including GitHub repositories, Microsoft Active Directory, or any on-premises servers, thereby enhancing the breadth of compliance oversight. Overall, the versatility and capabilities of AWS Config make it an essential tool for managing resource configurations effectively.
Description
Automated security measures for AWS provide a hands-free approach to gaining insights and implementing remediation for AWS infrastructure. It is crucial to ensure that AWS Config is enabled across all regions to maintain oversight. Additionally, measures should be taken to identify and halt public access to S3 buckets, whether through read, write, or full control permissions. Automatic enforcement of encryption for S3 objects and volumes is also essential. Furthermore, blocking login attempts from unauthorized IP addresses can enhance security. Non-compliant development resources must be curtailed, and it is advisable to remove any unused elastic load balancers. Implementing an IP restriction policy on AWS resources should be done automatically to reinforce security. Newly created internet-facing Elastic Load Balancers (ELBs) should be deleted unless they align with security protocols. Ports should only remain open in accordance with established policies. For RDS, it is necessary to terminate any unencrypted instances that are publicly accessible. Continuous monitoring and remediation against over a hundred rules are vital, ensuring compliance with AWS CIS benchmarks and adherence to best practices in AWS management. This comprehensive approach ensures a robust security posture for your cloud environment.
API Access
Has API
No
API Access
Has API
No
Integrations
AWS App Mesh
Yes
AWS CloudTrail
No
AWS Config
No
Alert Logic
Yes
Amazon GuardDuty
No
Amazon Macie
No
Amazon Web Services (AWS)
No
Anstrex
Yes
Bitcanopy
Yes
CardinalOps
Yes
Integrations
AWS App Mesh
No
AWS CloudTrail
Yes
AWS Config
Yes
Alert Logic
No
Amazon GuardDuty
Yes
Amazon Macie
Yes
Amazon Web Services (AWS)
Yes
Anstrex
No
Bitcanopy
No
CardinalOps
No
Pricing Details
$0.001 per rule evaluation
Free Trial
No
Free Version
No
Pricing Details
$75 per month
Free Trial
Yes
Free Version
Yes
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
Yes
Mac
Yes
Linux
Yes
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Customer Support
Business Hours
Yes
Live Rep (24/7)
Yes
Online Support
Yes
Customer Support
Business Hours
Yes
Live Rep (24/7)
No
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
Yes
Live Training (Online)
Yes
In Person
Yes
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
Yes
In Person
No
Vendor Details
Company Name
Amazon
Founded
1994
Country
United States
Website
aws.amazon.com/config/
Vendor Details
Company Name
Bitcanopy
Founded
2016
Country
United States
Website
www.bitcanopy.com
Product Features
Configuration Management
Access Control / Permissions
Yes
Application Deployment
Yes
Automated Provisioning
Yes
Infrastructure Automation
Yes
Node Management
Yes
Orchestration
Yes
Reporting Analytics / Visualization
Yes
Task Management
Yes
Product Features
Cloud Management
Access Control
Yes
Billing & Provisioning
No
Capacity Analytics
No
Cost Management
Yes
Demand Monitoring
No
Multi-Cloud Management
No
Performance Analytics
No
SLA Management
No
Supply Monitoring
No
Workflow Approval
No
Cloud Security
Antivirus
No
Application Security
No
Behavioral Analytics
No
Encryption
No
Endpoint Management
No
Incident Management
No
Intrusion Detection System
No
Threat Intelligence
No
Two-Factor Authentication
No
Vulnerability Management
No