Amazon CloudWatch metrics (for example, namespaces, metrics, dimensions, and resolution)
Amazon Inspector and common assessment templates
Network security components (for example, security groups, network ACLs, routing, AWS Network Firewall, AWS WAF, AWS Shield)
Application storage patterns (for example, Amazon Elastic File System [Amazon EFS], Amazon S3, Amazon Elastic Block Store [Amazon EBS])
Configuring deployment agents (for example, CodeDeploy agent)
AWS metrics and logging services (for example, CloudWatch, X-Ray)
Encrypting data in transit and data at rest (for example, AWS KMS, AWS CloudHSM, ACM)
Configuring load balancing to support cross-AZ services
Configuring alerting based on unexpected or anomalous security events
Automating the configuration of software applications to the desired state (for example, OpsWorks, Systems Manager State Manager)
Creating metric filters and dashboards to detect anomalous activity (for example, by using Amazon CloudWatch)
Identifying and implementing appropriate auto scaling, load balancing, and caching solutions
Analyzing and remediating the configuration of a custom application that is not reporting its statistics
Integrating AWS event sources (for example, AWS Health, EventBridge, CloudTrail)
Services and tools to analyze captured logs (for example, Athena, CloudWatch Logs filter)