The most amazing aspect of Amazon GuardDuty is that it allows continuous monitoring and analysis of event data from workloads and AWS accounts found in AWS CloudTrail, VPC flow records, and DNS records. Which is not necessary to implement or maintain...
Honestly I never saw anything in my logs. Besides SSH logins to the machine. It possibly could be more effective at large scale when your on hackers maps, but for me I never hit that point and it didnt seem necessary to pay for.
The platform is always there monitoring our configuration and events without much overhead, alerting us to crucial items quickly
Actually configuring alerts, suppressions and view logs on your own is confusing and not very developer friendly. This issue is avoided if you sign up for one of their managed plans.
The most amazing aspect of Amazon GuardDuty is that it allows continuous monitoring and analysis of event data from workloads and AWS accounts found in AWS CloudTrail, VPC flow records, and DNS records. Which is not necessary to implement or maintain...
The platform is always there monitoring our configuration and events without much overhead, alerting us to crucial items quickly
Honestly I never saw anything in my logs. Besides SSH logins to the machine. It possibly could be more effective at large scale when your on hackers maps, but for me I never hit that point and it didnt seem necessary to pay for.
Actually configuring alerts, suppressions and view logs on your own is confusing and not very developer friendly. This issue is avoided if you sign up for one of their managed plans.