Using aws iot device defender you can access device defender s features from the aws iot console cli or via a full set of apis.
Aws iot device defender.
An agent on each device is responsible for collecting device metrics and sending them to device defender.
Aws iot device defender is a security service that allows you to audit the configuration of your devices monitor connected devices to detect abnormal behavior and mitigate security risks.
Devices can send metrics at 5 minute to 48 hour intervals.
Aws iot device defender comes with security best practices that you can select and run as part of the audit.
Aws iot device defender detects unusual device behaviors that may be indicative of a compromise by continuously monitoring high value security metrics from the device and aws iot core e g the number of listening tcp ports on your devices or authorization failure counts.
You are billed separately for the audit and detect features.
It gives you the ability to enforce consistent security policies across your aws iot device fleet and respond quickly when devices are compromised.
Audit monitors your device related policies certificates and other resources to ensure that the proper security configuration is in place.
You can run audits on a continuous or ad hoc basis.
With aws iot device defender you pay only for what you use and there are no minimum fees or mandatory service usage.