AWS Security Hub
AWSSecurityFree tier availableCloud security posture management service that aggregates, prioritises, and responds to findings from GuardDuty, Inspector, Macie, IAM Access Analyzer, and 60+ third-party partners against CIS, PCI DSS, and AWS Foundational best practices
Attributes
- SLA Uptime
- 99.9%
- Multi Account
- Yes
Sub-services (3)
Security Standards
Automated CIS, PCI DSS, NIST 800-53, and AWS FSBP checks
Aggregated Findings
Normalised findings from GuardDuty, Inspector, Macie, and partners
Automated Response
EventBridge-driven remediation playbooks triggered by finding severity
Compliance & Certifications
This service is attested for the following frameworks. Always verify with the provider before relying on a specific compliance posture.
Where this runs
Sovereign regions (5)
- AWS GovCloud (US-East) · AshburnAWS GovCloud (US)
- AWS GovCloud (US-West) · HillsboroAWS GovCloud (US)
- AWS European Sovereign Cloud (Brandenburg) · BrandenburgAWS European Sovereign Cloud
- China (Beijing) · BeijingAWS China (Sinnet)
- China (Ningxia) · YinchuanAWS China (NWCD)
Commercial regions (33)
Europe (8)
- Europe (Paris)
- Europe (Frankfurt)
- Europe (Ireland)
- Europe (Milan)
- Europe (Spain)
- Europe (Stockholm)
- Europe (Zurich)
- Europe (London)
North America (7)
- Canada West (Calgary)
- Canada (Central)
- Mexico (Central)
- US East (N. Virginia)
- US West (Oregon)
- US East (Ohio)
- US West (N. California)
South America (1)
- South America (São Paulo)
Asia (11)
- Asia Pacific (Hong Kong)
- Asia Pacific (Hyderabad)
- Asia Pacific (Mumbai)
- Asia Pacific (Jakarta)
- Asia Pacific (Osaka)
- Asia Pacific (Tokyo)
- Asia Pacific (Malaysia)
- Asia Pacific (Singapore)
- Asia Pacific (Seoul)
- Asia Pacific (Taipei)
- Asia Pacific (Thailand)
Oceania (2)
- Asia Pacific (Melbourne)
- Asia Pacific (Sydney)
Middle East (3)
- Middle East (Bahrain)
- Israel (Tel Aviv)
- Middle East (UAE)
Africa (1)
- Africa (Cape Town)
Tags
Equivalent services on other platforms
Unified security operations platform covering vulnerability management, malware detection, baseline configuration scanning, log audit, container image scanning, and compliance posture across Alibaba Cloud and hybrid workloads
Unified cloud security posture management (CSPM) and cloud workload protection (CWPP) platform with compliance dashboards, secure score, and regulatory standards assessments
Centralised security and risk management platform for GCP with asset inventory, vulnerability scanning, threat detection, compliance reporting, and security posture dashboards
Unified CSPM and compliance posture service covering IBM Cloud and hybrid-cloud estates, with built-in scans against CIS Benchmark, FS Cloud Controls, NIST 800-53, and custom profiles, plus findings aggregation into IBM QRadar
Unified database security management for Oracle databases on OCI, on-prem, and other clouds, covering security assessment, user risk assessment, activity auditing, data discovery and masking, and SQL firewall policies — included with Autonomous Database