Ref: https://learn.cantrill.io/courses/1820301/lectures/41301379


Amazon Macie - Key Concepts


Amazon Macie - Architecture

Diagram: https://github.com/acantril/aws-sa-associate-saac03/blob/main/2000-SECURITY_DEPLOYMENTS_OPERATIONS/00_LEARNINGAIDS/AmazonMacie-1.png

  1. Discovery job is scheduled
  2. Discovery job uses managed and custom data identifiers to scan S3 buckets and generate findings
  3. Findings can trigger events in EventBridge → can be used for event-driven remediation (e.g. Lambda function that masks PII in S3 buckets)