AWS Security Hub now integrates with Amazon Detective (preview). Amazon Detective makes it easy to analyze, investigate, and quickly identify the root cause of security findings or suspicious activities. Amazon Detective automatically collects log data from your AWS resources and uses machine learning, statistical analysis, and graph theory to help you visualize and conduct faster and more efficient security investigations. The initial AWS Security Hub integration with Amazon Detective allows you to pivot from Amazon GuardDuty findings in Security Hub directly into Amazon Detective to investigate them. DNS-related findings are not supported in this initial integration release. AWS Security Hub automatically enables this integration for customers that are whitelisted in Amazon Detective’s gated public preview, but you first need to sign up and get access for Amazon Detective’s preview. To learn more, visit the Integration page in the Security Hub console and click on the “Configuration” link for Amazon Detective…

Read Full Source



Source link