Playbooks - Automated Security Response on AWS


A set of remediations is grouped into a package called a playbook. Playbooks are installed, updated, and removed using this solution’s templates. For information about supported remediations in each playbook, refer to Developer Guide → Playbooks. This solution currently supports the following playbooks:

Centralized logging

Automated Security Response on AWS logs to a single CloudWatch Logs group, SO0111-SHARR. These logs contain detailed logging from the solution for troubleshooting and management of the solution.