GithubHelp home page GithubHelp logo

security-hub's Introduction

Security Hub IaC Quickstart

This repository is intended for anyone that wants to get started setting up Security Hub.

It will enable Security Hub, AWS Config, CloudTrail and GuardDuty across your AWS Organizations member accounts and regions. It will also configure Security Hub to use the Consolidated findings feature and disable security controls based on Guidance from AWS.

This repository uses Infrastructure as Code to set up Security Hub. The advantages are:

  • you can review/audit the configuration of Security hub within source control
  • the deployment is automated and no manual steps are needed
  • you can modify and redeploy changes to your Security Hub configuration at any time to best fit your organizations need.

Org-formation or AWS Control Tower?

The quickstart uses the org-formation to deploy cloudformation templates, however it supports any AWS Organization (built with org-formation or otherwise) and wont make any changes to your AWS Organization.

All you have to do is to modify the organization-parameters.yml file and add the AccountId of your Security and LogArchive accounts and you are done.

Getting started

  1. fork this repo
  2. modify the values in organization-parameters.yml
  3. ensure you are signed into the management account of your AWS Organization
  4. run the following command to deploy Security Hub: npm ci && npm run perform-tasks
  5. discuss, exchange best practices or get help on slack

security-hub's People

Contributors

olafconijn avatar

Stargazers

 avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.