Community Hero & Cloud Warrior - Co-organiser - AWS User Group Mumbai - Twitter - @oyehooye - LinkedIn - /gauravkamboj “Not a security expert but passionate about security”
- around 8000 security professionals attended the event - next re:Inforce will be in Houston, Texas in 2020 What’s AWS re:Inforce? “95% of internet web traffic is HTTPS or encrypted but about 90% of Internet of Things (IoT) traffic is HTTP or unencrypted.” - Steve Schmidt, CISO - AWS
Security Hub is GA • AWS Control Tower is GA • Encryption by default available for opt-in on EBS volumes • AWS Marketplace now integrated with procurement system Major Announcements Security is “Job Zero” for everyone - Abby Fuller, AWS
using Nitro-based Instances. • AWS Security Hub was beta was primarily free so far, now you would need to pay for using it. • Control Tower is only available in 3 (US East, US West and Europe) instead of all regions (or even 15 regions like Security Hub) so not really sure how this is GA. • Encryption by default is only available on new EBS volumes but not enabled automatically on existing EBS Volumes. The old EBS volumes will still need to have encryption enabled. (i)This feature is only available for nitro system based instance types (ii)Once enabled you will not be able to launch any more C1,M1, M2 or T1 instance types or attach newly encrypted EBS volumes to existing instance of these types. What they didn’t say..