From the course: Complete Guide to AWS Security and Compliance Management
Unlock the full course today
Join today to access over 24,900 courses taught by industry experts.
Understanding data protection schemes - Amazon Web Services (AWS) Tutorial
From the course: Complete Guide to AWS Security and Compliance Management
Understanding data protection schemes
- [Instructor] There are a variety of controls available to help improve the security and auditability of data you store in S3. One control to be aware of is bucket versioning. Suppose you have two employees, Miguel and Guadalupe, who both have access to the corporate-secrets bucket. As the name implies, it contains various files, including a particularly sensitive spreadsheet with details about upcoming merger and acquisition activity. Guadalupe updates the spreadsheet with some new information about the upcoming merger. Miguel also has an update, but it doesn't contain Guadalupe's update. Unfortunately, Guadalupe's changes are lost. You can prevent this situation by editing the bucket properties to enable bucket versioning. Now, when Guadalupe changes a file, it will be stored as a new version within S3. Similarly, if Miguel accidentally overwrites Guadalupe's file without her changes, that new version is stored as version three. In this situation, Miguel could retrieve version two,…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.
Contents
-
-
-
-
-
-
-
-
-
Exploring S3 management options5m 6s
-
(Locked)
Accessing S3 privately3m 15s
-
(Locked)
Configuring private S3 access6m 13s
-
(Locked)
Managing S3 with IAM3m
-
(Locked)
Restricting S3 access with IAM11m 27s
-
(Locked)
Validating custom IAM S3 policy4m 9s
-
(Locked)
Leveraging S3 IAM policies in EC25m 57s
-
(Locked)
Creating an S3 bucket policy8m 5s
-
(Locked)
Illustrating S3 bucket policies with CLI4m 29s
-
(Locked)
Understanding S3 access control lists5m 16s
-
(Locked)
Understanding public access in S37m 11s
-
(Locked)
S3 public access best practices4m 19s
-
(Locked)
Exploring pre-signed URLs10m 16s
-
(Locked)
Understanding S3 Access Grants4m 37s
-
(Locked)
Understanding S3 Access Points5m 28s
-
(Locked)
Exploring S3 Access Points9m 32s
-
(Locked)
Understanding data protection schemes7m 30s
-
(Locked)
S3 security and compliance best practices4m 44s
-
(Locked)
Challenge: S3 replication challenge1m 52s
-
(Locked)
Solution: S3 replication challenge10m 36s
-
(Locked)
Challenge: S3 lifecycle challenge56s
-
(Locked)
Solution: S3 lifecycle challenge4m 32s
-
-
-