What Cybersecurity Features Are Missing from AWS?

0
12
Asked By CyberNinja42 On

I'm curious about the current gaps in Amazon Web Services (AWS) regarding cybersecurity. What specific services do you think AWS should offer that it currently lacks? I'm looking for insights from the community on this topic.

8 Answers

Answered By TechGuru99 On

I really wish AWS would provide a built-in SIEM solution instead of having to piece together various services to create a makeshift one. It can be quite the hassle!

DataDefender88 -

Take a look at AWS Security Lake—it's pretty close to what you're asking for.

CloudChaser77 -

That's a fair point, but many actual SIEM products integrate easily with AWS. It might not make sense for AWS to dive into a market they find tough to compete in.

Answered By CloudSeeker33 On

What specific services do you think they should add?

Answered By CyberSleuth01 On

Cybersecurity is really broad, and it touches on both sides of the shared responsibility model. Could you clarify what aspects you're focusing on?

Answered By SecuritySavant08 On

I've found that the Web Application Firewall (WAF) and AWS Config can be quite challenging to use, especially at scale. They often fall short in usability.

Answered By CryptoKnight36 On

It's a bit worrying how easy it is to set up an account using a prepaid card from a VPN and a throwaway email—there’s definitely a gap in their security layers.

Answered By RiskRanger46 On

There's a big issue with context in their security tools. We need the ability to tag resources by importance or sensitivity to help prioritize security measures. Also, implementing exception handling for security settings would be super helpful: being able to declare certain open ports as essential for business would save so much hassle. And don’t get me started on needing better data sensitivity tracking!

Answered By DevOpsDynamo12 On

They definitely need an endpoint security tool or a one-click 'secure by default' setup that covers a data perimeter, along with a dedicated SIEM.

Answered By InfraMaster55 On

Management at scale is a nightmare. Every AWS service has its own quirks, which makes it hard to deploy and manage everything efficiently. For instance, to enable Guard Duty across all regions, you have to set it up separately for each one and also for the management account. Why can’t they have a more unified approach like they do with CloudTrail?

Related Questions

LEAVE A REPLY

Please enter your comment!
Please enter your name here

This site uses Akismet to reduce spam. Learn how your comment data is processed.