Detection Automation¶
Goal¶
Automatically detect and remediate issues.
Core Services¶
| Service | Purpose |
|---|---|
| AWS Config | Compliance |
| Systems Manager | Remediation |
| Security Hub | Findings |
| Lambda | Automation |
Automation Flow¶
Config → Security Hub → EventBridge → Lambda → Remediation
Know¶
Config¶
- Rules
- Conformance packs
Systems Manager¶
- Automation runbooks
Lambda¶
- Event driven
Exam Trigger Words¶
"auto remediation" → Systems Manager
"compliance" → Config