Security, Identity, and Compliance
CoreAmazon Inspector
Automated vulnerability management for supported workloads, including software vulnerabilities and exposure findings.
Key points
- Inspector assesses supported compute and container-image resources; it does not analyze account behavior like GuardDuty.
- Findings depend on enabled resource scope and should feed patch, image, or remediation workflows.
- Prioritize by exploitability, exposure, business criticality, and compensating controls.
Best-known use cases
- Find vulnerable packages in EC2 and supported container images.
- Continuously assess supported workloads for exposure.
What candidates often confuse it with
- Inspector finds vulnerabilities; GuardDuty detects suspicious activity.
- Inspector produces findings; Security Hub aggregates findings from many sources.
Key takeaway
Choose Inspector for supported workload vulnerability and exposure management.
Related services
- Amazon GuardDuty
- AWS Security Hub
- Amazon ECR
Relevant exam tasks
- D1.2