Expand your security response headers using newly native Amazon CloudFront Response Headers!

Expand your security response headers using newly native Amazon CloudFront Response Headers!

It was recently (11/02/2021) announced that: Today, Amazon CloudFront is launching support for response headers policies. You can now add cross-origin resource sharing (CORS), security, and custom headers to HTTP responses returned by your CloudFront distributions. You no longer need to configure your origins or use custom Lambda@Edge or CloudFront functions to insert these headers.

Read More
AWS Security: a curated list of repositories

AWS Security: a curated list of repositories

AWS Security: a curated list of repositories Overview These lists will curate some of the latest GitHub repositories that assist with deploying to AWS using Terraform.

Read More
AWS Certified Security: Specialty overview

AWS Certified Security: Specialty overview

AWS Certified Security: Specialty Overview The AWS Certified Security: Specialty is geared towards individuals who focus primarily on security within AWS. I found that as a solutions architect, it is extremely important to have security at the forefront of my mind while building. Building an environment secure initially reduces the risk of failing compliance and potential exploitation at production launch.

Read More
Use a password manager with multifactor authentication

Use a password manager with multifactor authentication

Use a password manager with multifactor authentication Find yourself overrun with passwords from various applications, websites and more? The answer is to move to utilizing a password manager, along with enabling multifactor authentication. I’ll briefly list a few of the password managers available, but will walkthrough the combination of LastPass + Virtual MFA (Yubikey 5 NFC). The below guide will allow you to securely store your passwords and have a backup in-case you lose access to your mobile device which will be housing Google Authenticator.

Read More