AWS Security

AWS Security Blog The latest AWS security, identity, and compliance launches, announcements, and how-to posts.

  • Identify unused AWS KMS keys and prevent accidental key deletions
    by Andrea Rossi on June 2, 2026 at 7:01 pm

    As you scale your use of Amazon Web Services (AWS), managing KMS keys becomes increasingly important. Whether you manage a handful of keys or thousands across multiple AWS accounts and AWS Regions, there’s often a need to audit key usage to help you meet compliance requirements, evaluate your risk posture, and optimize key management costs.

  • Secure multi-tenant AI agents with Amazon Bedrock AgentCore resource-based policies
    by Satyen Verma on June 2, 2026 at 4:00 pm

    Software as a service (SaaS) providers building AI-powered applications on Amazon Bedrock AgentCore often need to serve multiple tenants with distinct security requirements from a shared infrastructure. Some tenants require cross-account access from their own Amazon Web Services (AWS) accounts, while others mandate that traffic stay within a private virtual private cloud (VPC) for regulatory

  • Spring 2026 SOC 1, 2, and 3 reports are now available with 188 services in scope
    by Baj Bajwa on June 1, 2026 at 4:07 pm

    Amazon Web Services (AWS) is pleased to announce that the Spring 2026 System and Organization Controls (SOC) 1, 2, and 3 reports are now available. The reports cover 188 services over the 12-month period from April 1, 2025–March 31, 2026, giving customers a full year of assurance. These reports demonstrate our continuous commitment to adhering

  • Why and how to migrate to a Transit Gateway-attached AWS Network Firewall
    by Frank Phillis on May 28, 2026 at 10:44 pm

    AWS Network Firewall now supports native attachment to AWS Transit Gateway. Customers commonly use Transit Gateway to route traffic from Amazon Virtual Private Cloud (Amazon VPC) networks to a centralized inspection VPC (a VPC dedicated to hosting firewall endpoints for traffic inspection) where their network firewall endpoints are deployed. This centralized deployment model reduces the

  • Simplifying policy management with URL and Domain Category filtering on AWS Network Firewall
    by Lawton Pittenger on May 28, 2026 at 6:57 pm

    Network administrators face a persistent challenge: maintaining domain blocklists and allowlists that keep pace with the internet. New websites and services emerge daily, and keeping these lists current requires constant manual updates that leave gaps in coverage. This challenge intensifies when managing access to rapidly evolving categories like AI services, where new tools launch on

  • Welcoming the AWS Customer Incident Response Team
    by Jason Hurst on May 26, 2026 at 7:04 pm

    May 26, 2026: This post was originally published in July 2022. It has been updated to reflect current engagement options, new threat intelligence resources such as the Threat Technique Catalog for AWS (TTC), additional open-source tools, and the distinction between AWS CIRT support and the AWS Security Incident Response managed service. Welcome back, or welcome

  • Well-architected best practices for software supply chain security
    by Trevor Schiavone on May 26, 2026 at 5:03 pm

    There have been multiple notable supply chain attacks using the npm Registry since September: Shai-Hulud, Chalk/Debug, one abusing tea.xyz tokens, and recently axios. Thanks to community efforts involving the Amazon Inspector team, the Open Source Security Foundation, and others, the affected packages were quickly flagged, which reduced the impact of these incidents. Supply chain attacks

  • AWS KY3P report now available for third-party supplier due diligence
    by Michael Murphy on May 21, 2026 at 7:58 pm

    We’re excited to announce that Amazon Web Services (AWS) has completed the S&P Global Know Your Third Party (KY3P) assessment of its security posture. This assessment demonstrates our continued commitment to meet the heightened expectations of cloud service providers. Customers can now use the AWS KY3P assessment to reduce their supplier due diligence burden. KY3P,

  • Automating identity lifecycle and security with AWS Directory Service APIs
    by Ali Alzand on May 21, 2026 at 4:00 pm

    Managing identities and access across complex environments has become more critical than ever. AWS Directory Service for Managed Microsoft Active Directory, also known as AWS Managed Microsoft AD, has added new capabilities to manage users and groups. Now, you can perform create, read, update, and delete (CRUD) operations on users and groups directly through AWS

  • Why Policy in Amazon Bedrock AgentCore chose Cedar for securing agentic workflows
    by Liana Hadarean on May 20, 2026 at 8:56 pm

    Agents have agency: they adapt and find multiple ways to solve problems. This autonomy creates a fundamental security challenge: the large language model (LLM) at the heart of the agent is non-deterministic, and its decisions can’t be predicted or guaranteed in advance. It can hallucinate harmful actions with complete confidence. It’s vulnerable to prompt injection

  • AWS Security Hub Extended: Why enterprise security products should sell themselves
    by Michael Fuller on May 20, 2026 at 5:32 pm

    Our largest security services customers started the same way every customer does – with a click. They enabled Amazon GuardDuty, Amazon Inspector, AWS WAF, and AWS Security Hub, experienced the benefits in real time, and evaluated with transparent pay-as-you-go pricing. No RFP. No six-month evaluation. No multi-year commitment up front. Our field teams played a

  • CIRT insights: How to help prevent unauthorized account removals from AWS Organizations
    by Shannon Brazil on May 19, 2026 at 9:34 pm

    The AWS Customer Incident Response Team works with customers to help them recover from active security incidents. As part of this work, the team often uncovers new or trending tactics used by various threat actors that take advantage of specific customer configurations and designs. Understanding these tactics can help inform your architecture decisions, improve your

  • Governing infrastructure as code using pattern-based policy as code
    by Guptaji Teegela on May 19, 2026 at 4:15 pm

    Organizations often struggle to enforce security and compliance requirements consistently across their cloud infrastructure. In one environment, a workload might be deployed in an AWS Region that was never approved for that class of data. In another, a security group might allow broader access than intended. Required tags might be missing. Encryption might be assumed

  • The AWS AI Security Framework: Securing AI with the right controls, at the right layers, at the right phases
    by Riggs Goodman III on May 15, 2026 at 5:38 pm

    May 26, 2026: We’ve updated this post to reflect recommended core services. TL;DR for busy executives The AWS AI Security Framework helps security leaders move fast and stay secure with AI. Security compounds from day 1 as workloads evolve from prototype to production to scale. Assess first. Request a no-cost SHIP engagement to baseline your

  • Regional routing for AWS access portals: Implementing custom vanity domains for IAM Identity Center
    by Georgi Baghdasaryan on May 14, 2026 at 8:42 pm

    AWS IAM Identity Center provides a web-based access portal that gives your workforce a single place to view their AWS accounts and applications. With the recent launch of IAM Identity Center multi-Region replication, customers can replicate their IAM Identity Center instance across multiple AWS Regions to improve resilience and reduce latency for a globally distributed

  • Automating post-quantum cryptography readiness using AWS Config
    by Pravin Nair on May 14, 2026 at 4:18 pm

    Migrating your TLS endpoints to Post-quantum cryptography (PQC) starts with understanding your current TLS endpoint inventory and posture. This post introduces the PQC Readiness Scanner — an automated tool that inventories your Application Load Balancer (ALB), Network Load Balancer (NLB), and Amazon API Gateway endpoints and continuously monitors their TLS configurations for PQC readiness. The

  • Detecting and preventing crypto mining in your AWS environment
    by Jason Palmer on May 13, 2026 at 9:47 pm

    This article guides you on how to use Amazon GuardDuty to identify and mitigate cryptocurrency mining threats in your Amazon Web Services (AWS) environment. You’ll learn about the specialized detection capabilities of GuardDuty and best practices to build a multi-layered defense strategy that protects your infrastructure costs and security posture. Understanding the crypto mining challenge

  • Introducing the updated AWS User Guide to Governance, Risk, and Compliance for Responsible AI Adoption
    by Krish De on May 13, 2026 at 7:07 pm

    The financial services industry (FSI) is using AI to transform how financial institutions serve their customers. AI solutions can help proactively manage portfolios, automatically refinance mortgages when rates decrease, and negotiate insurance premiums for customers. However, this adoption brings new governance, risk, and compliance (GRC) considerations that organizations need to address. To help FSI customers

  • PCI PIN and P2PE compliance packages for AWS Payment Cryptography are now available
    by Will Black on May 13, 2026 at 4:16 pm

    Amazon Web Services (AWS) is pleased to announce the successful completion of Payment Card Industry Personal Identification Number (PCI PIN) and PCI Point-to-Point Encryption (PCI P2PE) assessments for the AWS Payment Cryptography service. This assessment expands the AWS Payment Cryptography compliance portfolio, with AWS now validated as a component provider for Key Management (KMCP) and

  • AWS Security Agent full repository code scanning feature now available in preview
    by Ayush Singh on May 12, 2026 at 9:34 pm

    Today, we’re excited to announce the preview release of full repository code review, a new capability in AWS Security Agent that performs deep, context-aware security analysis of your entire code base. AI-driven cybersecurity capabilities are advancing rapidly. AWS Security Agent can now find vulnerabilities and build working exploits across your entire code base at a

Share Websitecyber
We are an ethical website cyber security team and we perform security assessments to protect our clients.