Solution: AWS_IAM
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊
| Attribute | Value |
|---|---|
| Publisher | Microsoft Corporation |
| Support Tier | Microsoft |
| Support Link | https://support.microsoft.com |
| Categories | domains |
| Version | 2.0.1 |
| Author | Microsoft - support@microsoft.com |
| First Published | 2022-09-28 |
| Solution Folder | AWS_IAM |
| Marketplace | Azure Marketplace · Popularity: 🟢 High (96%) |
The Amazon Web Services (AWS) Identity and Access Management (IAM) Solution for Microsoft Sentinel allows you to manage resources in AWS via playbooks thats use the AWS IAM API. The Playbboks included in the solution allow Enriching Incident with user information add tag to a user in AWS and delete access keys for users.
This solution does not include data connectors.
This solution may contain other components such as analytics rules, workbooks, hunting queries, or playbooks.
This solution includes 4 content item(s):
| Content Type | Count |
|---|---|
| Playbooks | 4 |
| Name | Description | Tables Used |
|---|---|---|
| AWS - Disable S3 Bucket Public Access | This playbook disables public access AWS S3 bucket. It is triggered by an incident in Microsoft Sent... | - |
| AWS IAM - Add tag to user | Once a new Microsoft Sentinel incident is created, this playbook gets triggered and performs the fol... | - |
| AWS IAM - Delete access keys | Once a new Microsoft Sentinel incident is created, this playbook gets triggered and performs the fol... | - |
| AWS IAM - Enrich incident with user info | Once a new Microsoft Sentinel incident is created, this playbook gets triggered and performs the fol... | - |
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊