automated-security-response-on-aws icon indicating copy to clipboard operation
automated-security-response-on-aws copied to clipboard

Automated Security Response on AWS is an add-on solution that works with AWS Security Hub to provide a ready-to-deploy architecture and a library of automated playbooks. The solution makes it easier f...

Results 40 automated-security-response-on-aws issues
Sort by recently updated
recently updated
newest added

**Describe the bug** The Amazon Eventbridge rules for CIS 1.4.0 framework that are enabled to start the Automated Response and triggered after matching the AWS Security Hub event have a...

bug
triaged

**Describe the bug** When executing ASR-SC_2.0.0_SNS.2 the automation returns 'Invalid document: ASR-EnableDeliveryLoggingForSNSTopic' When executing ASR-ASFBP_SNS.2 the automation succeeds as it executes the document 'ASR-EnableDeliveryStatusLoggingForSNSTopic' which is the correct name for...

bug
triaged

*Issue #, if available:* *BUG:* The control RDS.4 for the AFSBP standards contains an SSM document uses a line of Regex to find matched ARN's for RDS backups to encrypt,...

bug
triaged

*Issue #185 * *Description of changes:* Added additional properties to the Notification that is sent by SHARR on the SNS Topic when a Remediation is initiated and it's state changes....

triaged

**Is your feature request related to a problem? Please describe.** When debugging issues with the solution, the logging is not identifying the SNS topic that is being used which makes...

enhancement
triaged

Print out the name of the SNS topic that a Notification is published to for clarity in the logs. *Issue #183 * *Description of changes:* Updated log message to include...

KMS Customer Managed Keys are expensive. I'm looking at the [cost examples](https://docs.aws.amazon.com/solutions/latest/automated-security-response-on-aws/cost.html) in the documentation. Take the first one, $3.30/month. I believe it's wrong. 10 accounts is 10 keys. That's...

enhancement
triaged

1. | EC2.8 | Amazon EC2 instances should use Instance Metadata Service Version 2 (IMDSv2) | Applicable standards: AWS Foundational Security Best Practices v1.0.0, NIST SP 800-53 Rev. 5 2....

enhancement

**Describe the bug** DynamoDB table created by AdminStack is non compliant with 2 security controls - DynamoDB.1 & DynamoDB.6 (AFSBP & SC) **To Reproduce** Deploy Admin stack as per implementation...

enhancement
triaged