How should a Security Engineer accomplish this?

1 Comment

  1. Frank
    Author

    I have a feeling that the answer is:
    Deny inbound access on port 22 at the security group attached to the instance. Use AWS Systems Manager Session Manager for shell access to Amazon EC2 instances with the user tag defined. Enable Amazon CloudWatch logging for Systems Manager sessions.

Leave a Reply to Frank Cancel reply

Your email address will not be published. Required fields are marked *

18 + 5 =