Detection and Response on AWS
Continuously detect, prioritize, and respond to security risks to help protect your workloads, at scale
What is Detection and Response on AWS?
AWS detection and response services help protect your cloud environment with integrated security capabilities in a unified security solution. These services help you continuously detect and prioritize critical issues by correlating and enriching security signals, such as threats and vulnerabilities, enabling you to surface and prioritize active security risks and streamline response at scale to protect your cloud environment.

Overview
Get started with detection and response on AWS
Use cases
-
Expedia
Expedia needs to stay up to date with global and local compliance requirements and the ability to process, analyze, and control the vast amounts of data we generate. The AWS solution we built around Amazon Macie has helped us automate data scanning, tagging, sampling, and identification and implement rule configuration, generation of metrics, and scaling security controls. With Macie at the solution's core, we can reduce the footprint on our sensitive data. By reducing PII data, we can open up data access to our analysts while reducing exposure and, at the same time, resulting in an empowering and enriching experience for our customers.
Aaron Miller, Principal Engineer, Expedia Group
Featured content
Learn about the new security hub
AWS Security Hub Detect and respond to critical security issues
AWS Security Hub Demp
AWS Security Hub Exposure Findings
GuardDuty Malware Protection
GuardDuty Extended Threat Detection - Identify multi stage attacks
Multi-stage threat detection using Amazon GuardDuty and MITRE

Explore this infographic for an overview of detection and response services.

Read this eBook for an overview of detection and response on AWS.