- Популярные видео
- Авто
- Видео-блоги
- ДТП, аварии
- Для маленьких
- Еда, напитки
- Животные
- Закон и право
- Знаменитости
- Игры
- Искусство
- Комедии
- Красота, мода
- Кулинария, рецепты
- Люди
- Мото
- Музыка
- Мультфильмы
- Наука, технологии
- Новости
- Образование
- Политика
- Праздники
- Приколы
- Природа
- Происшествия
- Путешествия
- Развлечения
- Ржач
- Семья
- Сериалы
- Спорт
- Стиль жизни
- ТВ передачи
- Танцы
- Технологии
- Товары
- Ужасы
- Фильмы
- Шоу-бизнес
- Юмор
Project 12 of 100: Digital Forensics & Automated Incident Response (DFIR) in AWS
In this video, we build a fully automated Digital Forensics and Incident Response (DFIR) pipeline in AWS. When a security breach happens, a manual response is too slow. We will use Amazon GuardDuty, EventBridge, Step Functions, Lambda, and Systems Manager to automatically isolate compromised EC2 instances and capture both disk (EBS snapshots) and memory (RAM dumps) evidence.
We will also test our pipeline using the official AWS GuardDuty Tester to generate real malicious traffic, triggering a genuine GuardDuty finding for communicating with a Tor entry node!
**What you will learn:**
- How to deploy the AWS GuardDuty Tester via CDK
- Creating an Isolation Security Group that blocks attackers but allows forensic tools
- Writing a Lambda function to isolate EC2 instances
- Orchestrating a forensic workflow with AWS Step Functions
- Using `avml` via Systems Manager to capture memory dumps without kernel headers
🔗 Resources:
• CloudGuard Portfolio: https://cloudguardportfolio.com
• GitHub: https://github.com/sulemoore
• Previous Project (PRJ-SEC-010): https://youtu.be/gNmIfw4JzOc
🤝 Connect with Me:
• LinkedIn: https://www.linkedin.com/in/MoSuleiman/
If you found this helpful, please LIKE and SUBSCRIBE for more hands-on cloud security projects!
#AWS #CloudSecurity #IncidentResponse #DFIR #Cybersecurity
Видео Project 12 of 100: Digital Forensics & Automated Incident Response (DFIR) in AWS канала CloudGuard Portfolio
We will also test our pipeline using the official AWS GuardDuty Tester to generate real malicious traffic, triggering a genuine GuardDuty finding for communicating with a Tor entry node!
**What you will learn:**
- How to deploy the AWS GuardDuty Tester via CDK
- Creating an Isolation Security Group that blocks attackers but allows forensic tools
- Writing a Lambda function to isolate EC2 instances
- Orchestrating a forensic workflow with AWS Step Functions
- Using `avml` via Systems Manager to capture memory dumps without kernel headers
🔗 Resources:
• CloudGuard Portfolio: https://cloudguardportfolio.com
• GitHub: https://github.com/sulemoore
• Previous Project (PRJ-SEC-010): https://youtu.be/gNmIfw4JzOc
🤝 Connect with Me:
• LinkedIn: https://www.linkedin.com/in/MoSuleiman/
If you found this helpful, please LIKE and SUBSCRIBE for more hands-on cloud security projects!
#AWS #CloudSecurity #IncidentResponse #DFIR #Cybersecurity
Видео Project 12 of 100: Digital Forensics & Automated Incident Response (DFIR) in AWS канала CloudGuard Portfolio
`prj-mle-001-document-classification` `CloudGuard` `Document Classification` `Machine Learning Engineering` `MLE` `NLP` `GRC` `Compliance Automation` `NIST 800-53` `ISO 27001` `SOC 2` `Data Governance` `Cloud Security` `AWS Lambda` `Azure Functions` `BERT` `DistilBERT` `Serverless ML` `Regulatory Compliance` `Tutorial`
Комментарии отсутствуют
Информация о видео
4 апреля 2026 г. 8:10:27
00:36:03
Другие видео канала




















