Multiple Releases: announcing Foundation-security-services-setup v0.1.1 #15
PeterBengtson
announced in
Announcements
Replies: 0 comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
Uh oh!
There was an error while loading. Please reload this page.
-
The Problem
Setting up AWS security services across an organisation is time-consuming, repetitive, and error-prone. Infrastructure engineers face several challenges:
Infrastructure engineers typically spend hours or days manually enabling GuardDuty, Detective, Inspector, IAM Access Analyzer, Security Hub, and AWS Config across multiple regions, then configuring proper delegation and organization-wide policies.
The Solution
OpenSecOps Foundation-security-services-setup eliminates the configuration complexity by providing a single, automated interface for all AWS security services.
New Component: Foundation-security-services-setup
PRE-RELEASE VERSION: This version, v0.1.1, provides comprehensive discovery and analysis of AWS security services. It does not yet create, delete, or modify AWS resources, but it will give you a diagnosis as well as actionable points. Full automation capabilities, automatically acting on these points, is coming in v1.0.0.
What it does:
Key Features:
Before vs After:
Before (Manual Process):
[Hours of repetitive console clicking]
After (Automated):
✅ All services configured in minutes
Getting Started
See the Foundation-security-services-setup README for complete installation and configuration details. NB: The utility can also be run stand-alone, without the Installer or OpenSecOps.
Additional Improvements
Enhanced SOAR Operations (v2.3.0)
CloudWatch Alarm Context Enrichment: SOAR now provides enhanced AI incident analysis with enriched CloudWatch alarm data and execution context for Step Functions and Lambda incidents. This gives operations teams much more actionable information when infrastructure components experience issues.
Improved Error Resilience: Enhanced AI operation error handling changed from States.Timeout to States.ALL for improved Bedrock timeout resilience, ensuring AI analysis continues even when services experience various failure modes.
Refined Installation Experience (v2.5.1)
Installer Improvements: Fixed script execution to properly pass --verbose flag to component scripts when using verbose mode, ensuring consistent debugging output across all Foundation components during deployment.
Consolidated Security Monitoring (v1.2.6)
SOAR-all-alarms-to-sec-hub Enhancements: Multiple refinements to CloudWatch alarm forwarding to Security Hub, improving the reliability and completeness of security event consolidation across your AWS environment.
Enhanced Documentation (v1.2.0)
Comprehensive updates to installation guides, component documentation, and troubleshooting resources to support the growing OpenSecOps ecosystem.
Foundation-security-services-setup is ready for immediate use - simply follow the README instructions for standalone usage or integrate with your existing OpenSecOps Installer configuration.
All other improvements are automatically active for existing SOAR installations through normal update processes.
This release represents a significant step forward in automating AWS security service configuration, eliminating hours of manual work while ensuring consistent, organization-wide security posture management.
Beta Was this translation helpful? Give feedback.
All reactions