{"repo":"aws-solutions/automated-security-response-on-aws","free":true,"listed":false,"github":"https://github.com/aws-solutions/automated-security-response-on-aws","clone":"git clone https://github.com/aws-solutions/automated-security-response-on-aws.git","description":"Automated Security Response on AWS is an add-on solution that works with AWS Security Hub to provide a ready-to-deploy architecture and a library of automated playbooks. The solution makes it easier for AWS Security Hub customers to resolve common security findings and to improve their security posture in AWS.","language":"TypeScript","stars":477,"topics":["aws","aws-security-automation","aws-security-hub"],"license":"Apache-2.0","category":"security-tools","readme_excerpt":"Automated Security Response on AWS 🚀 Solution Landing Page \\ 🚧 Feature request \\ 🐛 Bug Report Automated Security Response (ASR) on AWS is a solution that enables AWS Security Hub customers to remediate findings with a single click using sets of predefined response and remediation actions called Playbooks. The remediations are implemented as AWS Systems Manager automation documents. The solution includes remediations for issues such as unused access keys, open security groups, weak account password policies, VPC flow logging configurations, and public S3 buckets. Remediations can also be configured to trigger automatically when findings appear in AWS Security Hub. The solution includes the playbook remediations for some of the security controls defined as part of the following standards: - AWS Foundational Security Best Practices (FSBP) v1.0.0 - Center for Internet Security (CIS) AWS Foundations Benchmark v1.2.0 - Center for Internet Security (CIS) AWS Foundations Benchmark v1.4.0 - Center for Internet Security (CIS) AWS Foundations Benchmark v3.0.0 - Payment Card Industry (PCI) Data Security Standard (DSS) v3.2.1 - National Institute of Standards and Technology (NIST) Special Publication 800-53 Revision 5 A Playbook called Security Control is included that allows operation with AWS Security Hub's Consolidated Control Findings feature. Note : To deploy the solution without building from the source code, use the CloudFormation templates linked from the Solution Landing Page.","default_branch":null,"files":null,"tree":[],"storefront":"/r/aws-solutions","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/aws-solutions/automated-security-response-on-aws/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}