Amazon CloudWatch now supports ingesting Security Hub CSPM findings with organization-wide enablement
Share
Services
Amazon CloudWatch now supports ingesting AWS Security Hub CSPM findings, enabling customers to centrally analyze and monitor security findings directly in CloudWatch Logs. Security Hub CSPM findings are supported in AWS Security Finding Format (ASFF) and Open Cybersecurity Schema Framework (OCSF) format using CloudWatch Pipelines, providing standardized security data ingestion. Customers can now use CloudWatch Logs Insights to query findings, create metric filters for monitoring, and leverage Amazon S3 Tables integration for advanced analytics, helping security teams identify and respond to threats faster across their AWS environment. With today's launch, customers can automatically enable Security Hub findings delivery to CloudWatch Logs using CloudWatch enablement rules that apply to the entire organization or specific accounts, to standardize security monitoring coverage. For example, a security team can create an enablement rule to automatically send Security Hub findings to CloudWatch Logs for all production accounts, ensuring consistent visibility into security posture. Security Hub findings to CloudWatch logs are available in all AWS commercial regions. Security Hub findings are charged as tiered pricing when delivered to CloudWatch Logs. For pricing information, see the [CloudWatch pricing page.](https://aws.amazon.com/cloudwatch/pricing/) To learn more about Security Hub findings in CloudWatch Logs and organization-level enablement, visit the [Amazon CloudWatch documentation.](https://docs.aws.amazon.com/AmazonCloudWatch/latest/logs/AWS-logs-and-resource-policy.html).
What else is happening at Amazon Web Services?
Amazon OpenSearch Service introduces agentic AI for log analytics
about 15 hours ago
Services
Share
AWS IAM Identity Center is now available in AWS European Sovereign Cloud (Germany) Region
about 15 hours ago
Services
Share
Amazon SageMaker Unified Studio adds Observability for AWS Glue jobs via CloudWatch metrics
about 16 hours ago
Services
Share
Amazon ECS Managed Instances now supports Amazon EC2 instance store
about 19 hours ago
Services
Share
Amazon Bedrock AgentCore Evaluations is now generally available
about 20 hours ago
Services
Share