Viewing and managing control findings - AWS Security Hub

Viewing and managing control findings

The control details page displays a list of active findings for a control. The list does not include archived findings.

The control details page supports cross-Region aggregation. If you have set an aggregation Region, the control status and list of security checks on the control details page include checks from all linked AWS Regions.

The list provides tools to filter and sort the findings, so that you can focus on more urgent findings first. A finding may include links to resource details in the related service console. For controls that are based on AWS Config rules, you can view details about the rule and the configuration timeline.

You can also use the AWS Security Hub API to retrieve a list of findings. For more information, see Instructions for reviewing finding details and history.

To reflect the current status of your investigation of a control finding, you set the workflow status. For more information, see Setting the workflow status of Security Hub findings.

You can also send selected Security Hub findings to a custom action in Amazon EventBridge. For more information, see Sending Security Hub findings to a custom action.