This course explores the Amazon Macie service and how it helps you keep track of your S3 buckets and warns you about any sensitive data it might find.

Learning Objectives

  • Learn about Amazon Macie and how it can help secure your S3 buckets
  • Learn how you can take automated actions against security vulnerabilities within your S3 buckets using Amazon Macie
  • Understand how Amazon Macie integrates with AWS Security Hub and AWS Organizations to make account management and security easier

Intended Audience

  • Solutions architects
  • Developers
  • Anyone interested in learning how they can increase the security of their architectures that utilize S3 for data storage


To get the most out of this course, you should have a decent understanding of cloud computing and cloud architectures, specifically Amazon Web Services. You should also have some background knowledge about security within the cloud, as well as with S3.


Wrap up. Amazon Macie provides another way to keep your S3 buckets and the data within secure. By actively watching the permissions of your buckets and keeping track of any changes to them, Macie is able to let you know if something is publicly accessible or shared. This alone can help keep your data secure and prevent data leaks from making their way onto the public web.

Additionally, Macie is able to actively scrub through your text data, which could be encrypted, compressed, or even in big data formatting. This lets you see if any personally identifying information, credit card data, or health data is there, that is unsecured. When performing sensitive data discovery, you are able to find these vulnerabilities and address them as needed.

Macie can also be used in a group environment through AWS organizations. With this setup, you can have a Macie administrator account oversee up to 5000 member accounts. You have the ability to perform data discovery jobs across all these accounts, as well as check for bucket vulnerabilities across all the members.

Overall, Amazon Macie is a very strong security service that can be a huge boon to almost any architecture or organization. I would recommend taking a look at the service and seeing how it can fit into your next project, or just give it a test run on your already provisioned data sets. On the small scale, it's fairly cost-effective, and on the large end of things, at least you get a discount the more you use.

Well, that's all I have for you for this lecture. My name is Will Meadows and I'd like to thank you for spending your time here learning about Amazon Macie.

About the Author

William Meadows is a passionately curious human currently living in the Bay Area in California. His career has included working with lasers, teaching teenagers how to code, and creating classes about cloud technology that are taught all over the world. His dedication to completing goals and helping others is what brings meaning to his life. In his free time, he enjoys reading Reddit, playing video games, and writing books.