Security insights
DoiT Security Insights adopts a multi-source approach to filter out noise and help you focus on security threats that matter. It consolidates findings from industry-leading tools and platforms, such as AWS Security Hub, AWS Trusted Advisor, Google Cloud Recommender, and Wiz, to provide comprehensive coverage across your cloud environments and help you form a context-driven solution.
View security insights
On the Insights dashboard, launch the full list of security insights using either of the following ways:
-
In the Top priorities section, select View all on the Immediate security risks tab.
-
In the Explore by category section, select View Security insights.
On the security insight list page, you can search for insights using the search bar, filter insights, sort insights, or launch the insight detail page. Note that the options differ slightly according to the way insights are grouped.
Group by insight
The Group by insight tab leverages AI and a static hierarchy to group findings from different resources by the issues they identified. It allows you to:
-
Filter insights by Severity, Priority, Sources, Status, and Tags.
-
Order insights by Insight (in alphabetical order), Severity, Priority, or Status.
-
Expand an insight to view the affected resources.
Group by resource
The Group by resource tab groups insights by the affected resources. It allows you to:
-
Filter insights by Severity, Priority, Sources, and Provider.
-
Order insights by Resource ID, Account, the number of identified Issues, Severity, or Priority.
-
Expand a resource to view the related insights and select View details to launch the insight detail page.
Group by account
The Group by account tab groups insights by the affected accounts. It allows you to:
-
Filter insights by Severity, Provider, and Sources.
-
Order insights by Account, the number of affected Resources, or Severity.
-
Expand resources of an account to view the related insights and select View details to launch the insight detail page.
Security insight details
DoiT's multi-source approach to Security Insights means that a single DoiT insight could be the aggregation of insights from different sources. The original context, description, and remediation steps from each source are accessible on the security insight's details page. You can also select a Resource ID in the Affected resources list to launch the relevant page in the AWS console, or select the Sources icon to open the associated recommendation service page.
See Insight details for generic options.