diff --git a/docs/integrations/product-list/product-list-a-l.md b/docs/integrations/product-list/product-list-a-l.md index 871a5d7ca9..be96d75706 100644 --- a/docs/integrations/product-list/product-list-a-l.md +++ b/docs/integrations/product-list/product-list-a-l.md @@ -115,7 +115,7 @@ For descriptions of the different types of integrations Sumo Logic offers, see [ | Thumbnail icon | [AWS Network Load Balancer](https://aws.amazon.com/elasticloadbalancing/network-load-balancer/) | App: [AWS Network Load Balancer](/docs/integrations/amazon-aws/network-load-balancer/) | | Thumbnail icon | [AWS OpsWorks](https://aws.amazon.com/opsworks/) | Collector: [Deploy Sumo Logic Collectors on AWS OpsWorks](/docs/send-data/collect-from-other-data-sources/deploy-collectors-aws-opsworks/) | | Thumbnail icon | [AWS Private Certificate Authority](https://aws.amazon.com/private-ca/) | App: [AWS Private Certificate Authority](/docs/integrations/amazon-aws/aws-private-certificate-authority/)
Automation integration: [AWS Private Certificate Authority](/docs/platform-services/automation-service/app-central/integrations/aws-private-certificate-authority/) | -| Thumbnail icon | [AWS Security Hub](https://aws.amazon.com/security-hub/) | Apps:
- [AWS Security Hub CSPM](/docs/integrations/amazon-aws/security-hub/)
- [AWS Security Hub Cloud Security Monitoring and Analytics](/docs/integrations/cloud-security-monitoring-analytics/aws-security-hub/)
- [AWS Security Hub - OCSF](/docs/integrations/cloud-security-monitoring-analytics/aws-security-hub-ocsf/)
- [AWS Security Quick Start](/docs/integrations/amazon-aws/security-quickstart/)
Automation integration: [AWS Security Hub](/docs/platform-services/automation-service/app-central/integrations/aws-security-hub/)
Cloud SIEM integration: [Amazon AWS - Security Hub](https://github.com/SumoLogic/cloud-siem-content-catalog/blob/master/products/d0aebc1c-db4d-440f-b69f-70dae24befff.md) | +| Thumbnail icon | [AWS Security Hub](https://aws.amazon.com/security-hub/) | Apps:
- [AWS Security Hub CSPM](/docs/integrations/amazon-aws/security-hub/)
- [AWS Security Hub Cloud Security Monitoring and Analytics](/docs/integrations/cloud-security-monitoring-analytics/aws-security-hub/)
- [AWS Security Hub - OCSF](/docs/integrations/cloud-security-monitoring-analytics/aws-security-hub-ocsf/)
- [AWS Security Quick Start](/docs/integrations/amazon-aws/security-quickstart/)
Automation integrations:
- [AWS Security Hub](/docs/platform-services/automation-service/app-central/integrations/aws-security-hub/)
- [AWS Security Hub V2](/docs/platform-services/automation-service/app-central/integrations/aws-security-hub-v2/)
Cloud SIEM integration: [Amazon AWS - Security Hub](https://github.com/SumoLogic/cloud-siem-content-catalog/blob/master/products/d0aebc1c-db4d-440f-b69f-70dae24befff.md) | | Thumbnail icon | [AWS Simple Notification Service](https://aws.amazon.com/sns/) | Automation integration: [AWS Simple Notification Service](/docs/platform-services/automation-service/app-central/integrations/aws-simple-notification-service/) | | Thumbnail icon | [AWS WAF](https://aws.amazon.com/waf/) | Apps:
- [AWS WAF](/docs/integrations/amazon-aws/waf/)
- [AWS WAF Cloud Security Monitoring and Analytics](/docs/integrations/cloud-security-monitoring-analytics/aws-waf/)
Automation integration: [AWS WAF](/docs/platform-services/automation-service/app-central/integrations/aws-waf/)
Cloud SIEM integration: [Amazon AWS - Web Application Firewall (WAF)](https://github.com/SumoLogic/cloud-siem-content-catalog/blob/master/products/072b85a2-1765-45c2-911d-b0509880326e.md) | | Thumbnail icon | [Axonius](https://www.axonius.com/) | Automation integration: [Axonius](/docs/platform-services/automation-service/app-central/integrations/axonius/) | diff --git a/docs/platform-services/automation-service/app-central/integrations/aws-security-hub-v2.md b/docs/platform-services/automation-service/app-central/integrations/aws-security-hub-v2.md new file mode 100644 index 0000000000..8abedb045f --- /dev/null +++ b/docs/platform-services/automation-service/app-central/integrations/aws-security-hub-v2.md @@ -0,0 +1,71 @@ +--- +title: AWS Security Hub V2 +description: '' +--- + +import useBaseUrl from '@docusaurus/useBaseUrl'; + +aws + +***Version: 1.0 +Updated: Dec 11, 2025*** + +Interact with AWS Security Hub V2 through Insights and Findings. + +## Actions + +* **Import Single Finding** (*Enrichment*) - Import a single finding. +* **Create Insight** (*Containment*) - Create a new insight with the specified information. +* **Delete Insight** (*Containment*) - Delete the specified insight. +* **Get Findings** (*Enrichment*) - Get findings matching the specified query. +* **Get Insight Results** (*Enrichment*) - Get results for the specified insight. +* **Get Insights** (*Enrichment*) - Get insights matching the specified query. +* **List Enabled Products** (*Enrichment*) - Get a list of SecurityHub enabled products. +* **Update Finding** (*Containment*) - Update a finding with the specified information. +* **Update Insight** (*Containment*) - Update the specified insight. + +## Configure AWS Security Hub in Automation Service and Cloud SOAR + +import IntegrationsAuth from '../../../../reuse/integrations-authentication.md'; +import IntegrationsAuthAWS from '../../../../reuse/integrations-authentication-aws.md'; +import AWSRegions from '../../../../reuse/automation-service/aws/region.md'; +import AWSAccesskey from '../../../../reuse/automation-service/aws/access-key.md'; +import AWSSecret from '../../../../reuse/automation-service/aws/secret.md'; +import AWSIAMRole from '../../../../reuse/automation-service/aws/iam-role.md'; +import IntegrationCertificate from '../../../../reuse/automation-service/integration-certificate.md'; +import IntegrationEngine from '../../../../reuse/automation-service/integration-engine.md'; +import IntegrationLabel from '../../../../reuse/automation-service/integration-label.md'; +import IntegrationProxy from '../../../../reuse/automation-service/integration-proxy.md'; +import IntegrationTimeout from '../../../../reuse/automation-service/integration-timeout.md'; +import IAMConfiguration from '../../../../reuse/automation-service/aws/iam-configuration.md'; + + + +* +* **Host**. Enter your [Security Hub URL](https://docs.aws.amazon.com/general/latest/gr/sechub.html), for example, `securityhub.us-east-1.amazonaws.com`. +* +* **Service Name**. Enter `securityhub`. +* +* +* +* +* +* + +AWS Security Hub configuration + + + +For information about AWS Security Hub, see [AWS Security Hub documentation](https://docs.aws.amazon.com/securityhub/). + +### AWS IAM role-based access + + + +## Limitations + +Local [Automation Bridge](/docs/platform-services/automation-service/automation-service-bridge/) is not supported in this version. + +## Change Log + +* December 11, 2025 - First upload diff --git a/static/img/platform-services/automation-service/app-central/integrations/aws/aws-security-hub-v2-configuration.png b/static/img/platform-services/automation-service/app-central/integrations/aws/aws-security-hub-v2-configuration.png new file mode 100644 index 0000000000..bc77834222 Binary files /dev/null and b/static/img/platform-services/automation-service/app-central/integrations/aws/aws-security-hub-v2-configuration.png differ