Skip to content
English
  • There are no suggestions because the search field is empty.

AWS Security Hub Integration

AgileBlue's Cerulean AI SecOps platform can collect and monitor data from AWS Security Hub by accessing the REST API.

Supported Platform Version

  • AWS Security Hub API version 1.0

Setup Process

  1. Log in to your AWS console
  2. Select IAM
  3. Click Users on the navigation menu
  4. Create a new IAM user account (ex. agileblue)
  5. Go to the Permissions tab
  6. Click Add permissions
  7. Select Create inline policy
  8. In the policy editor, set Service to Security Hub, Action to GetFindings, and Resource to All, then click Next
  9. Name the policy (ex. AgileBlue-SecurityHub) and click Save
  10. Open the new IAM user's profile
  11. Click Create access key on the Security Credentials tab
  12. Select Third-Party Service and click Next
  13. Enter a description tag (ex. AgileBlue SOC) then select Create Access Key
  14. Copy the following values to a secure location:
    1. Access Key
    2. Secret Access Key
    NOTE: The Secret Access Key will only be visible once
  15. Securely send the above values to support@agileblue.com
    1. Optionally, contact support@agileblue.com to request an encrypted email. Once received, you can reply to the encrypted email with the above values to securely transfer this information to AgileBlue.

 



Need Help?

AgileBlue is always here to support you and ensure you are 100% successful. If there are any issues with the installation or if you have any questions, please reach out to AgileBlue Support.

Email: support@agileblue.com 
Phone: (216) 606-9400
🚨