It seems like it was not too long ago that Optus and Medibank had Cyber Attacks launched on them, before other companies followed along as well. With the government stepping up their expectations for companies in navigating this risky time, understanding best practices within compliance and security has never been more needed. In this talk, I will talk about tracking changes within the AWS environment with AWS Config, aligning them with best practices and policies according to industry practices within a multi-account, multi-region configuration with aggregators. I will expand on this by talking about how compliance can be automated through centralizing governance and monitoring through deployment, audit, remediation, and notification workflows.