Luke Hedger
AWS Community Builder
AWS Summit London - April 2022
@level_out
Fully managed data security service that uses machine learning to discover sensitive data in AWS workloads
- Monitor key pipeline metrics in CloudWatch
- Alert with visibility and actionability (ChatOps)
- Test in production with CloudWatch Synthetics
- Compress Kinesis data delivered to S3 (GZIP)
- Reduce S3 objects analysed by Macie (Lifecycle Policy)
- Archive infrequently accessed S3 objects (Intelligent Tiering)
- Encrypt all data at rest and in transit with KMS
- Record activity via CloudTrail, CloudFormation
- Aggregate security findings in Security Hub
- Deployable pipeline github.com/lukehedger/cdk-macie
- More from me twitter.com/level_out
- These slides đ¤łđ
Thanks!
By Luke
Using Amazon Macie to build serverless data pipelines for detecting sensitive data leaks
âď¸ Cloud Native đ DevOps âĄď¸ Serverless â¨ď¸ Node.js