Import AWS Security Hub Findings

Description

AWS Security Hub is a Cloud Security Posture Management (CSPM) service that performs security best practice checks, aggregates alerts, and enables automated remediation.

Jit imports the results of the Cloud Security Posture Management into the platform, enabling you to monitor and respond to threats in a proactive manner across multiple AWS accounts.

Jit specifically imports high and critical findings from AWS services, enabling you to focus on the most important security issues.

Stack layerSecurity domainSecurity tool initiated by this item
Cloud SecurityCloud runtime scanningAWS Security Hub

Prerequisites

Troubleshooting

In the event that pipelines fail to display AWS findings:

  • Ensure that Security Hub is enabled on your AWS account.
  • Make sure you exclude accounts without Security Hub. Follow the instructions at Plan Resources Exclusion.
  • Review the execution log within the pipeline. The execution log provides detailed information about each step in the pipeline, including any error messages or exceptions that occurred.
    To view the execution log of a pipeline -
    Go to the Pipelines page, select the pipelineand select View log under the pipeline workflow.