You Can’t Secure What You Can’t See
Security and visibility are critical considerations in any AWS deployment. That’s where Splunk can help. Splunk solutions power critical operational and security insights giving you visibility across your AWS environment.
Splunk solutions, including the free Splunk App for AWS, enable you to:
- Seamlessly transform data from your AWS environment (including AWS CloudTrail, Config and VPC Flow Logs) into real-time security insights across users and resources
- Gain instant insight through pre-built dashboards and reports
- Identify and resolve AWS security risks
- Fulfill your role in the AWS shared responsibility model – ensuring security of workloads and applications running on AWS
Splunk and AWS CloudTrail
AWS CloudTrail provides a full audit trail of all user activity in your AWS account. By analyzing CloudTrail data in the Splunk App for AWS, you gain real-time monitoring for critical security related events – including changes to security groups, unauthorized user access, and changes to admin privileges.
Splunk and AWS Config
AWS Config provides a full audit trail of all resource changes in your AWS account. By analyzing Config data in the Splunk App for AWS, you gain real-time monitoring and topology visualization of all your AWS resources – enabling you to view your entire environment in a single topology diagram, monitor instance start/stops, and gain end-to-end visibility across all network configuration changes.