Skip to main content
Panther Knowledge Base

How to correlate alerts from Panther's CIS policies to AWS Security Hub Findings

QUESTION

I'm using this pack of AWS detections for CIS compliance. How can I correlate alerts from these detections to AWS Security Hub findings?

ANSWER

To do this, we recommend using Custom Tags in your policies, as described here. You may need to add your own tags to correlate to the Security Hub findings you use, since currently we don't support full coverage on these tags.