Trusted Advisor Security Checks
Surface risky settings and cost-of-security recommendations.
What Trusted Advisor Is
AWS Trusted Advisor inspects your account against AWS best practices and gives prioritized recommendations.
It spans five categories: cost optimization, performance, security, fault tolerance, and service limits. For the exam, the security checks are the focus.
Security Category Checks
Trusted Advisor's security checks surface common risky settings, such as:
- S3 buckets with open permissions.
- Security groups with unrestricted ports (like 0.0.0.0/0 on SSH).
- IAM use and whether MFA on the root account is enabled.
All lessons in this course
- Landing Zones with AWS Control Tower
- Conformance Packs of Config Rules
- Trusted Advisor Security Checks
- Mapping Controls to Compliance Frameworks