AWS Security, Identity & Compliance
Amazon GuardDuty
Intelligent threat detection that monitors accounts and workloads for malicious activity.
What it is used for
- Detecting compromised credentials
- Spotting crypto-mining
- Security alerts
Equivalent on Google Cloud
The closest Google Cloud service is Security Command Center: central security and risk management: misconfigurations, vulnerabilities and threats.
How DomainHostly helps with Amazon GuardDuty
- Plan: choose the right setup, size and region for your workload and budget.
- Set up securely: configure Amazon GuardDuty with least-privilege access, encryption and backups where they apply.
- Migrate: move from shared hosting, your own servers or the other cloud with minimal downtime.
- Run and optimise: monitoring, updates and regular cost reviews so you only pay for what you use.
Security, Identity & Compliance: Identity and access, encryption keys, secrets, firewalls, threat detection and compliance.
What to consider: Security, Identity & Compliance
- Grant the least privilege needed and prefer roles or service accounts over long-lived keys.
- Turn on multi-factor authentication for every administrator account.
- Enable audit logs and threat detection from day one; they are hard to reconstruct after an incident.
Related services: Security, Identity & Compliance
- AWS IAM (AWS)
- AWS IAM Identity Center (AWS)
- AWS Organizations (AWS)
- AWS KMS (AWS)
- AWS Secrets Manager (AWS)
- AWS Certificate Manager (AWS)
- Identity and Access Management (IAM) (Google Cloud)
- Resource Manager & Organization Policy (Google Cloud)
- Cloud Key Management Service (Google Cloud)
- Secret Manager (Google Cloud)