Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊
| Attribute | Value |
|---|---|
| Publisher | Microsoft Corporation |
| Support Tier | Microsoft |
| Support Link | https://support.microsoft.com |
| Categories | domains |
| Version | 3.0.1 |
| Author | Microsoft |
| First Published | 2025-03-12 |
| Last Updated | 2025-12-14 |
| Solution Folder | AWS Security Hub |
| Marketplace | Azure Marketplace · Popularity: 🟢 High (81%) |
AWS Security Hub Solution for Microsoft Sentinel provides data connector to ingest AWS Security Hub findings into Microsoft Sentinel.
Additional Information
📖 Setup Guide: Connect Microsoft Sentinel to AWS - Configure your AWS environment for Microsoft Sentinel integration
This solution provides 1 data connector(s):
This solution uses 1 table(s):
| Table | Used By Connectors | Used By Content |
|---|---|---|
AWSSecurityHubFindings |
AWS Security Hub Findings (via Codeless Connector Framework) | Analytics, Hunting |
This solution includes 11 content item(s):
| Content Type | Count |
|---|---|
| Analytic Rules | 8 |
| Hunting Queries | 3 |
| Name | Tactics | Tables Used |
|---|---|---|
| AWS Security Hub - CloudTrail trails without log file validation | DefenseEvasion | AWSSecurityHubFindings |
| AWS Security Hub - EC2 instances with public IPv4 address | InitialAccess, Exfiltration | AWSSecurityHubFindings |
| AWS Security Hub - IAM users with console password and no MFA | PrivilegeEscalation, CredentialAccess, DefenseEvasion | AWSSecurityHubFindings |
| Version | Date Modified (DD-MM-YYYY) | Change History |
|---|---|---|
| 3.0.2 | 27-08-2025 | AWS Security Hub added Analytical Rule and Hunting Queries |
| 3.0.1 | 27-06-2025 | AWS Security Hub CCF Data Connector moving to GA |
| 3.0.0 | 14-05-2025 | New Data Connector, Pre Release |
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊