Intermediate

Amazon ECR Security Essentials

Bootcamp: Rapid Threat Modeling with GenAI & LLMs - June 6-7, 2024. Only 12 seats left - Secure your spot!
Learning Path
AWS Security
Ideal for
DevOps
Cloud Engineer
2
Hours
11
Lessons
4
Cloud Labs

Amazon Elastic Container Registry (ECR) is a cornerstone service that allows you to completely manage container images within AWS. But Container Registries also happen to be a major threat vector that attackers can exploit.

By gaining access to your container registry, attackers can launch widespread supply-chain attacks against your infrastructure and compromise your container images. This course is a deep-dive into specific security features of ECR that help you prevent, detect, and correct security weaknesses in your container images within AWS.

We start off with an overview of Container Registry and various features of Amazon ECR. We explore AWS Identity and Access Management (IAM) and how it fits in with the functions of ECR.

Next, we use hands-on labs to learn how to scan container images for vulnerabilities and pinpoint security flaws. We also look at tag immutability for ECR.

For our final lesson, we’ll be learning to monitor security events. Get some hands-on practice setting up and using Cloudtrail-Athena for security monitoring for Amazon ECR.

You might also like these courses

Or explore these Learning Paths

Labs

ECR IAM Tag Identity

ECR Scan

ECR Immutable Image Tag

ECR CloudTrail Athena

Hands-on. Defensive. Bleeding-Edge.

There's no other training platform that does all three. Except AppSecEngineer.
Get Our Newsletter
Get Started
X
FOLLOW APPSECENGINEER
CONTACT

Contact Support

help@appsecengineer.com

1603 Capitol Avenue,
Suite 413A #2898,
Cheyenne, Wyoming 82001,
United States

Copyright AppSecEngineer © 2023