AWS GuardDuty analyzes AWS logs (CloudTrail, VPC Flow Logs, DNS logs) to detect threats: brute-force attacks, compromised credentials, malware, unauthorized API access. It uses machine learning trained on AWS's security data. You enable GuardDuty, review findings, integrate with incident response. Mastery means understanding threat types, tuning false positives, automation, and compliance integration. Learning path: security fundamentals (1 week) → GuardDuty setup (1 week) → findings + response (2 weeks) → automation + tuning (1 week).
AWS GuardDuty is a threat detection service. It analyzes CloudTrail logs (API calls), VPC Flow Logs (network traffic), and DNS logs to identify suspicious activity: compromised credentials, malware, brute-force attempts, unauthorized access, cryptomining. GuardDuty uses machine learning trained on AWS security data. It flags threats as "findings," which you investigate and respond to.
| 지역 | 주니어 | 미들 | 시니어 |
|---|---|---|---|
| USA | $70k | $115k | $160k |
| UK | £42k | £70k | £105k |
| EU | €48k | €75k | €115k |
| CANADA | C$75k | C$125k | C$170k |
커리어 매칭을 해보세요 — 맞는 방향을 제안해 드립니다.
나에게 맞는 스킬 찾기 →2,536개 직무를 스킬 기반으로 매칭. 무료, 약 2분.
커리어 매칭 무료로 하기 →