Ref: https://learn.cantrill.io/courses/1820301/lectures/41301379


Amazon Macie - Key Concepts


Amazon Macie - Architecture

image.png

  1. Discovery job is scheduled
  2. Discovery job uses managed and custom data identifiers to scan S3 buckets and generate findings
  3. Findings can trigger events in EventBridge → can be used for event-driven remediation (e.g. Lambda function that masks PII in S3 buckets)