<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>AWS Incident Response &#8211; Noise</title>
	<atom:link href="https://noise.getoto.net/tag/aws-incident-response/feed/" rel="self" type="application/rss+xml" />
	<link>https://noise.getoto.net</link>
	<description>The collective thoughts of the interwebz</description>
	<lastBuildDate>Fri, 21 Nov 2025 18:47:13 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.2</generator>
	<item>
		<title>Accelerate investigations with AWS Security Incident Response AI-powered capabilities</title>
		<link>https://noise.getoto.net/2025/11/21/accelerate-investigations-with-aws-security-incident-response-ai-powered-capabilities/</link>
		
		<dc:creator><![CDATA[Daniel Begimher]]></dc:creator>
		<pubDate>Fri, 21 Nov 2025 18:47:13 +0000</pubDate>
				<category><![CDATA[AI]]></category>
		<category><![CDATA[Amazon GuardDuty]]></category>
		<category><![CDATA[announcements]]></category>
		<category><![CDATA[artificial intelligence]]></category>
		<category><![CDATA[AWS Incident Response]]></category>
		<category><![CDATA[AWS Security Hub]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=91ea14e6ffec9d3a1e5eeea51655e236</guid>

					<description><![CDATA[If you’ve ever spent hours manually digging through AWS CloudTrail logs, checking AWS Identity and Access Management (IAM) permissions, and piecing together the timeline of a security event, you understand the time investment required for incident investigation. Today, we’re excited to announce the addition of AI-powered investigation capabilities to AWS Security Incident Response that automate […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Optimize security operations with AWS Security Incident Response</title>
		<link>https://noise.getoto.net/2025/09/24/optimize-security-operations-with-aws-security-incident-response/</link>
		
		<dc:creator><![CDATA[Kyle Shields]]></dc:creator>
		<pubDate>Tue, 23 Sep 2025 22:09:43 +0000</pubDate>
				<category><![CDATA[AWS Incident Response]]></category>
		<category><![CDATA[AWS security]]></category>
		<category><![CDATA[AWS Security and Compliance]]></category>
		<category><![CDATA[Best practices]]></category>
		<category><![CDATA[Compliance]]></category>
		<category><![CDATA[Customer Solutions]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<category><![CDATA[threat detection and incident response]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=c6c00a8ec8dc4c7656b1748371c5c15f</guid>

					<description><![CDATA[Security threats demand swift action, which is why AWS Security Incident Response delivers AWS-native protection that can immediately strengthen your security posture. This comprehensive solution combines automated triage and evaluation logic with your security perimeter metadata to identify critical issues, seamlessly bringing in human expertise when needed. When Security Incident Response is integrated with Amazon […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>How to develop an Amazon Security Lake POC</title>
		<link>https://noise.getoto.net/2024/02/28/how-to-develop-an-amazon-security-lake-poc/</link>
		
		<dc:creator><![CDATA[Anna McAbee]]></dc:creator>
		<pubDate>Wed, 28 Feb 2024 14:25:25 +0000</pubDate>
				<category><![CDATA[Amazon Security Lake]]></category>
		<category><![CDATA[AWS Incident Response]]></category>
		<category><![CDATA[AWS security]]></category>
		<category><![CDATA[cloud security]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[logging]]></category>
		<category><![CDATA[monitoring]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=c2428f28fc2b61a2d2ea78d68a40b183</guid>

					<description><![CDATA[You can use Amazon Security Lake to simplify log data collection and retention for Amazon Web Services (AWS) and non-AWS data sources. To make sure that you get the most out of your implementation requires proper planning. In this post, we will show you how to plan and implement a proof of concept (POC) for […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Two real-life examples of why limiting permissions works: Lessons from AWS CIRT</title>
		<link>https://noise.getoto.net/2023/08/31/two-real-life-examples-of-why-limiting-permissions-works-lessons-from-aws-cirt/</link>
		
		<dc:creator><![CDATA[Richard Billington]]></dc:creator>
		<pubDate>Thu, 31 Aug 2023 14:03:48 +0000</pubDate>
				<category><![CDATA[AWS Incident Response]]></category>
		<category><![CDATA[Best practices]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[least privilege]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Threat Detection & Incident Response]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=58e6de58c53330a6eb11161a8161ed7a</guid>

					<description><![CDATA[Welcome to another blog post from the AWS Customer Incident Response Team (CIRT)! For this post, we’re looking at two events that the team was involved in from the viewpoint of a regularly discussed but sometimes misunderstood subject, least privilege. Specifically, we consider the idea that the benefit of reducing permissions in real-life use cases […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Logging strategies for security incident response</title>
		<link>https://noise.getoto.net/2023/04/04/logging-strategies-for-security-incident-response/</link>
		
		<dc:creator><![CDATA[Anna McAbee]]></dc:creator>
		<pubDate>Tue, 04 Apr 2023 17:09:13 +0000</pubDate>
				<category><![CDATA[AWS Incident Response]]></category>
		<category><![CDATA[AWS security]]></category>
		<category><![CDATA[Best practices]]></category>
		<category><![CDATA[cloud security]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[logging]]></category>
		<category><![CDATA[monitoring]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=558f03bbac5a17e54df738244fb875b7</guid>

					<description><![CDATA[Effective security incident response depends on adequate logging, as described in the AWS Security Incident Response Guide. If you have the proper logs and the ability to query them, you can respond more rapidly and effectively to security events. If a security event occurs, you can use various log sources to validate what occurred and […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Updated whitepaper available: AWS Security Incident Response Guide</title>
		<link>https://noise.getoto.net/2023/01/04/updated-whitepaper-available-aws-security-incident-response-guide/</link>
		
		<dc:creator><![CDATA[Anna McAbee]]></dc:creator>
		<pubDate>Wed, 04 Jan 2023 20:17:25 +0000</pubDate>
				<category><![CDATA[announcements]]></category>
		<category><![CDATA[AWS Incident Response]]></category>
		<category><![CDATA[AWS Security Incident Response Guide]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=2d3becd71eed75232e7e194359c1a65f</guid>

					<description><![CDATA[The AWS Security Incident Response Guide focuses on the fundamentals of responding to security incidents within a customer’s Amazon Web Services (AWS) Cloud environment. You can use the guide to help build and iterate on your AWS security incident response program. Recently, we updated the AWS Security Incident Response Guide to more clearly explain what […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Introducing the AWS Best Practices for Security, Identity, &#038; Compliance Webpage and Customer Polling Feature</title>
		<link>https://noise.getoto.net/2020/09/04/introducing-the-aws-best-practices-for-security-identity-compliance-webpage-and-customer-polling-feature/</link>
		
		<dc:creator><![CDATA[Marta Taggart]]></dc:creator>
		<pubDate>Fri, 04 Sep 2020 19:38:27 +0000</pubDate>
				<category><![CDATA[announcements]]></category>
		<category><![CDATA[AWS Identity and Access Management]]></category>
		<category><![CDATA[AWS Incident Response]]></category>
		<category><![CDATA[AWS Well-Architected Security]]></category>
		<category><![CDATA[Best practices]]></category>
		<category><![CDATA[Compliance]]></category>
		<category><![CDATA[Foundational (100)]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=11e486a686b39084973329e4941e5917</guid>

					<description><![CDATA[The AWS Security team has made it easier for you to find information and guidance on best practices for your cloud architecture. We&#8217;re pleased to share the Best Practices for Security, Identity, &#38; Compliance webpage of the new AWS Architecture Center. Here you&#8217;ll find top recommendations for security design principles, workshops, and educational materials, and [&#8230;]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 49/163 objects using Memcached
Page Caching using Disk: Enhanced 
Lazy Loading (feed)
Database Caching using Memcached

Served from: noise.getoto.net @ 2025-12-08 15:32:18 by W3 Total Cache
-->