Article Details
Scrape Timestamp (UTC): 2024-12-03 01:35:57.154
Source: https://www.theregister.com/2024/12/03/amazon_cloud_security_incident_response/
Original Article Text
Click to Toggle View
AWS unveils cloud security IR service for a mere $7K a month. Tap into the infinite scalability... of pricing. Re:Invent Amazon Web Services has a new incident response service that combines automation and people to protect customers' AWS accounts - at a hefty price. The minimum monthly cost starts at $7,000 and the pricing tiers increase from there, based on customers' AWS spending across all enrolled accounts. Here's the pricing overview per the cloud giant: The price for the new security service drew some scrutiny on social media, as Eric Hammond, a self-described AWS enthusiast, noted: "I started to look into the features … then I noticed the pricing. On to the next announcement." The new security service was announced at AWS's annual re:Invent conference and it continues Amazon's ongoing push into cloud security, which is necessary to keep up with its fellow cloud giants. Google, of course, famously bought Mandiant, the preeminent threat-intel and incident response company, for $5.4 billion in 2022. And Microsoft, despite its repeated security failings, remains one of if not the largest security vendors in the world. We should note, however, that Redmond has come under fire for charging extra for its security add-ons. The fresh-baked AWS Security Incident Response consists of three main parts. First, it reads findings from Amazon GuardDuty, which is AWS' monitoring and threat detection tool, plus third-party threat intel products via AWS Security Hub, a centralized threat dashboard. It uses AI and ML to analyze these data points, we're told, and then identifies "high-priority incidents requiring immediate attention," according to Betty Zheng, a senior developer advocate at AWS who detailed the new service in a blog yesterday. Security Incident Response also provides a centralized console from which customers can set security notification rules and permissions across AWS and third-party security products. This also centralizes communication, data transfer, video conference scheduling, and other remediation efforts between the various parties responding to the security incident. Plus, it can automate case history tracking and reporting. Finally, the third piece of the new service includes 24/7 access to the AWS Customer Incident Response Team (CIRT), which helps customers respond to and recover from digital intrusions. AWS Security Incident Response also provides access to self-service investigation tools, should customers want to conduct IR operations on their own, or they can work with third-party security vendors on this piece as well, with the service also providing coordinated communications between teams. The new service is now available in 12 AWS Regions globally: US East (Northern Virginia, Ohio), US West (Oregon), Asia Pacific (Seoul, Singapore, Sydney, Tokyo), Canada (Central), and Europe (Frankfurt, Ireland, London, Stockholm). Will this be a case of: if AWS builds it, customers will pay? We will be keeping an eye on this new IR service to see.
Daily Brief Summary
AWS has introduced a new cloud-based security incident response service costing a minimum of $7,000 per month.
The service, announced at AWS's re:Invent conference, integrates automation with human expertise to enhance AWS account protection.
It functions by analyzing data from Amazon GuardDuty and third-party threat intelligence through AWS Security Hub.
Utilizes artificial intelligence and machine learning to detect critical incidents that require immediate action.
Features a centralized console for setting security alerts, data transfers, and coordinates remediation efforts.
Offers 24/7 access to the AWS Customer Incident Response Team (CIRT) for help with digital intrusions, and includes self-service tools for investigations.
Currently available in 12 AWS regions worldwide, including the US, Asia Pacific, Canada, and Europe.
The pricing structure, based on customer's AWS spending, has faced criticism from users and industry observers.