0PricingLogin
AWS Security Academy · Lesson

Trusted Advisor Security Checks

Surface risky settings and cost-of-security recommendations.

What Trusted Advisor Is

AWS Trusted Advisor inspects your account against AWS best practices and gives prioritized recommendations.

It spans five categories: cost optimization, performance, security, fault tolerance, and service limits. For the exam, the security checks are the focus.

Security Category Checks

Trusted Advisor's security checks surface common risky settings, such as:

  • S3 buckets with open permissions.
  • Security groups with unrestricted ports (like 0.0.0.0/0 on SSH).
  • IAM use and whether MFA on the root account is enabled.

All lessons in this course

  1. Landing Zones with AWS Control Tower
  2. Conformance Packs of Config Rules
  3. Trusted Advisor Security Checks
  4. Mapping Controls to Compliance Frameworks
← Back to AWS Security Academy