AWS Security Blog

How AWS Network Firewall session state replication maximizes high availability for your application traffic

AWS Network Firewall is a managed, stateful network firewall and intrusion protection service that you can use to implement firewall rules for fine grained control over your network traffic. With Network Firewall, you can filter traffic at the perimeter of your virtual private cloud (VPC); including filtering traffic going to and coming from an internet […]

Implement effective data authorization mechanisms to secure your data used in generative AI applications – part 2

In part 1 of this blog series, we walked through the risks associated with using sensitive data as part of your generative AI application. This overview provided a baseline of the challenges of using sensitive data with a non-deterministic large language model (LLM) and how to mitigate these challenges with HAQM Bedrock Agents. The next […]

HAQM Redshift enhances security by changing default behavior in 2025

Today, I’m thrilled to announce that HAQM Redshift, a widely used, fully managed, petabyte-scale data warehouse, is taking a significant step forward in strengthening the default security posture of our customers’ data warehouses. Some default security settings for newly created provisioned clusters, HAQM Redshift Serverless workgroups, and clusters restored from snapshots have changed. These changes […]

How to deploy an HAQM OpenSearch cluster to ingest logs from HAQM Security Lake

April 29, 2025: We’ve updated this post to make it simpler for customers to deploy the resources. July 29, 2024: Original publication date of this post. The current version was updated to make the instructions clearer and compatible with OCSF 1.1. Customers often require multiple log sources across their AWS environment to empower their teams […]

Updated whitepaper available: Aligning to the NIST Cybersecurity Framework in the AWS Cloud

Today, we released an updated version of the Aligning to the NIST Cybersecurity Framework (CSF) in the AWS Cloud whitepaper to reflect the significant changes introduced in the National Institute of Standards and Technology (NIST) Cybersecurity Framework (CSF) 2.0, published in February 2024. This comprehensive update helps you understand how AWS services align with the […]

AWS GuardDuty

Testing and evaluating GuardDuty detections

HAQM GuardDuty is a threat detection service that continuously monitors, analyzes, and processes HAQM Web Services (AWS) data sources and logs in your AWS environment. GuardDuty uses threat intelligence feeds, such as lists of malicious IP addresses and domains, file hashes, and machine learning (ML) models to identify suspicious and potentially malicious activity in your […]

AWS Firewall Manager retrofitting: Harmonizing central security with application team flexibility

AWS Firewall Manager is a powerful tool that organizations can use to define common AWS WAF rules with centralized security policies. These policies specify which accounts and resources are in scope. Firewall Manager creates a web access control list (web ACL) that adheres to the organization’s policy requirements and associates it with the in-scope resources. […]

Announcing upcoming changes to the AWS Security Token Service global endpoint

April 18, 2025: AWS has made changes to the AWS Security Token Service (AWS STS) global endpoint (sts.amazonaws.com) in Regions enabled by default to enhance its resiliency and performance. AWS STS requests to the global endpoint are automatically served in the same AWS Region as your workloads. These changes will not be deployed to opt-in […]

Building a culture of security: AWS partners with the BBC

Cybersecurity isn’t just about technology—it’s about people. That’s why HAQM Web Services (AWS) partnered with the BBC to explore the human side of cybersecurity in our latest article, The Human Side of Cybersecurity: Building a Culture of Security, available on the BBC website. In the piece, we spotlight the AWS Security Guardians program and how […]

C5 logo

2024 C5 Type 2 attestation report available with 179 services in scope

HAQM Web Services (AWS) is pleased to announce a successful completion of the 2024 Cloud Computing Compliance Criteria Catalogue (C5) attestation cycle with 179 services in scope. This alignment with C5 requirements demonstrates our ongoing commitment to adhere to the heightened expectations for cloud service providers. AWS customers in Germany and across Europe can run […]