This playbook enables SOC teams to retrieve and validate the list of Amazon S3 buckets as part of a broader investigation or cloud security audit. It integrates with AWS S3 to dynamically fetch bucket metadata and allows the analyst to control whether the action should proceed based on the context of the case.
The workflow ensures that only verified and relevant data retrieval is performed while maintaining strict audit trails within ArcSight SOAR.
This playbook enables SOC teams to retrieve and validate the list of Amazon S3 buckets as part of a broader investigation or cloud security audit. It integrates with AWS S3 to dynamically fetch bucket metadata and allows the analyst to control whether the action should proceed based on the context of the case.
The workflow ensures that only verified and relevant data retrieval is performed while maintaining strict audit trails within ArcSight SOAR.
Please upgrade to one of the following broswers: Internet Explorer 11 (or greater) or the latest version of Chrome or Firefox