Luke Hedger
AWS Community Builder
AWS Summit London - April 2022
Fully managed data security service that uses machine learning to discover sensitive data in AWS workloads
- Monitor key pipeline metrics in CloudWatch
- Alert with visibility and actionability (ChatOps)
- Test in production with CloudWatch Synthetics
- Compress Kinesis data delivered to S3 (GZIP)
- Reduce S3 objects analysed by Macie (Lifecycle Policy)
- Archive infrequently accessed S3 objects (Intelligent Tiering)
- Encrypt all data at rest and in transit with KMS
- Record activity via CloudTrail, CloudFormation
- Aggregate security findings in Security Hub
- Deployable pipeline github.com/lukehedger/cdk-macie
- More from me twitter.com/level_out
- These slides 🤳👇
Thanks!