AWS Security, Identity & Compliance
AWS Secrets Manager
Stores and rotates passwords, API keys and other secrets securely.
What it is used for
- Database credentials
- API keys for apps
- Automatic rotation
Equivalent on Google Cloud
The closest Google Cloud service is Secret Manager: stores API keys, passwords and certificates securely with versioning and access control.
How DomainHostly helps with AWS Secrets Manager
- Plan: choose the right setup, size and region for your workload and budget.
- Set up securely: configure AWS Secrets Manager with least-privilege access, encryption and backups where they apply.
- Migrate: move from shared hosting, your own servers or the other cloud with minimal downtime.
- Run and optimise: monitoring, updates and regular cost reviews so you only pay for what you use.
Security, Identity & Compliance: Identity and access, encryption keys, secrets, firewalls, threat detection and compliance.
What to consider: Security, Identity & Compliance
- Grant the least privilege needed and prefer roles or service accounts over long-lived keys.
- Turn on multi-factor authentication for every administrator account.
- Enable audit logs and threat detection from day one; they are hard to reconstruct after an incident.
Related services: Security, Identity & Compliance
- AWS IAM (AWS)
- AWS IAM Identity Center (AWS)
- AWS Organizations (AWS)
- AWS KMS (AWS)
- AWS Certificate Manager (AWS)
- AWS WAF (AWS)
- Identity and Access Management (IAM) (Google Cloud)
- Resource Manager & Organization Policy (Google Cloud)
- Cloud Key Management Service (Google Cloud)
- Secret Manager (Google Cloud)