If you have AWS workload, definitely use AWS config for compliance monitoring
Pros
- Great to track config changes and helpful for troubleshooting.
- Great for compliance questions you might get.
Cons
- It's only AWS, no third party.
- Not the most intuitive interface, but with a little getting used to it is OK.
Most Important Features
- Auditability
- Troubleshooting: who did what when.
Return on Investment
- Alerting on changes can be setup so issues can be solved quickly.