

# 문서 이력
<a name="document-history-for-the-aws-security-incident-response-user-guide"></a>

다음 표에서는 2026년 1월 1일 이후의 AWS Security Incident Response 설명서에 대한 중요 추가 사항을 설명합니다. 이 설명서에 대한 업데이트 알림을 받으려면 RSS 피드에 가입하면 됩니다.

| 변경 사항 | 설명 | 날짜 | 
| --- |--- |--- |
| [탐지 서비스 및 통합 지침으로 온보딩 사전 조건 업데이트](https://docs.aws.amazon.com/security-ir/latest/userguide/onboarding-prerequisites.html) | 탐지 서비스(Amazon GuardDuty, AWS Security Hub CSPM, AWS CloudTrail), Security Hub CSPM을 통한 서드 파티 EDR 통합에 대한 확장된 지침 및 온보딩 전에 생성된 조사 결과는 소급 수집되지 않는다는 참고 사항이 포함된 온보딩 사전 조건 페이지를 다시 작성했습니다. | 2026년 7월 2일 | 
| [AWS Security Incident Response란 무엇인가요? 페이지 다시 작성](https://docs.aws.amazon.com/security-ir/latest/userguide/what-is.html) | 서비스 개요, 조사 결과 중복 제거, 로그 액세스, 억제 규칙, 자동 및 인적 조사, 선제적 및 사후 대응 사례, 격리, 통합, 서비스 경계를 다루는 업데이트된 콘텐츠가 포함된 '무엇인가요?' 페이지를 다시 작성했습니다. | 2026년 7월 2일 | 
| [탐지 및 분석 페이지의 조사 결과 업데이트 섹션 확장](https://docs.aws.amazon.com/security-ir/latest/userguide/detect-and-analyze.html) | 보관된 조사 결과 및 보관되지 않은 조사 결과 범주를 포함하여 Amazon GuardDuty 조사 결과에 대한 전체 분류 결과 체계를 문서화하도록 탐지 및 분석 페이지를 재구성했습니다. 조사 결과 보관 콘텐츠를 탐지 섹션에서 조사 결과 업데이트 섹션으로 재배치했습니다. | 2026년 7월 2일 | 
| [온보딩 설명서 통합](https://docs.aws.amazon.com/security-ir/latest/userguide/deploy-configure.html) | AWS Security Incident Response 활성화 페이지를 사전 조건, 멤버십 계정 선택, 계정 범위 구성, 서비스 권한, 격리 작업을 다루는 간소화된 단일 가이드로 다시 작성했습니다. 이제 업데이트된 페이지로 리디렉션되는 멤버십 계정 선택, 멤버십 세부 정보 설정 및 AWS Organizations와 계정 연결 페이지의 콘텐츠를 통합했습니다. | 2026년 7월 2일 | 
| [구성 검증 가이드 추가](https://docs.aws.amazon.com/security-ir/latest/userguide/config-validation.html) | 등록 확인, 탐지 소스 검증, 자동 파이프라인 테스트, 알림 테스트, 격리 준비 상태 확인, 문제 해결 지침 등 AWS Security Incident Response 구성을 검증하기 위한 단계별 절차가 포함된 새 주제를 추가했습니다. | 2026년 7월 2일 | 
| [API/CLI를 사용한 Security Incident Response 활성화 페이지의 CLI 예제 수정](https://docs.aws.amazon.com/security-ir/latest/userguide/enable-sir-using-cli.html) | `--incident-response-team` 배열의 JSON 객체 사이에 누락된 쉼표 구분 기호를 추가하고 `communicationPreferences`에서 잘못된 `email` 열거형 값을 유효한 값으로 대체하여 `create-membership` CLI 예제를 수정했습니다. | 2026년 7월 1일 | 
| [격리 설명서 개정](https://docs.aws.amazon.com/security-ir/latest/userguide/contain.html) | 지원되는 격리 작업, 격리 의사 결정, 전략 개발, 단계적 격리 접근 방식, 격리와 인시던트 수명 주기 간의 관계에 대한 업데이트된 설명을 포함하도록 격리 페이지를 통합했습니다. | 2026년 6월 26일 | 
| [온보딩 가이드에 격리 배포 및 EC2 Triage 역할을 추가했습니다.](https://docs.aws.amazon.com/security-ir/latest/userguide/working-with-stacksets.html) | AWS CloudFormation StackSets 설명서를 새 온보딩 단계로 옮기고 다시 작성했습니다. 서비스 관리형 권한으로 StackSet을 생성하는 단계별 절차를 추가하고, 격리 전용 및 EC2 Triage 포함 격리 옵션에 대한 템플릿 설명을 업데이트했습니다. | 2026년 6월 26일 | 
| [활성화 중 위임된 관리자에 대한 IAM 권한 요구 사항을 추가했습니다.](https://docs.aws.amazon.com/security-ir/latest/userguide/onboarding-prerequisites.html) | 위임된 관리자 계정에 로그인하는 데 사용되는 IAM 보안 주체에 `AdministratorAccess` 권한이 있어야 한다는 사전 조건을 추가했습니다. 권한이 부족하면 단계가 실패한다는 점을 명확히 하기 위해 활성화 절차의 로그인 단계에 참고 사항을 추가했습니다. | 2026년 6월 19일 | 
| [온보딩 설명서 통합](https://docs.aws.amazon.com/security-ir/latest/userguide/deploy-configure.html) | AWS Security Incident Response 활성화 페이지를 사전 조건, 멤버십 계정 선택, 계정 범위 구성, 서비스 권한, 격리 작업을 다루는 간소화된 단일 가이드로 다시 작성했습니다. 이제 업데이트된 페이지로 리디렉션되는 멤버십 계정 선택, 멤버십 세부 정보 설정 및 AWS Organizations와 계정 연결 페이지의 콘텐츠를 통합했습니다. | 2026년 6월 17일 | 
| [멤버십 취소에 서비스 연결 역할 정리 지침을 추가했습니다.](https://docs.aws.amazon.com/security-ir/latest/userguide/cancel-membership.html) | 멤버십 취소 후 `AWSServiceRoleForSecurityIncidentResponse` 및 `AWSServiceRoleForSecurityIncidentResponse_Triage` 서비스 연결 역할이 자동으로 삭제되지 않는다는 점을 명확히 하는 중요 참고 사항을 추가했습니다. 범위에 포함된 모든 계정에서 이러한 역할을 수동으로 삭제해야 합니다. | 2026년 6월 17일 | 
| [인시던트 사후 보고서의 이름을 월별 보고서로 변경](https://docs.aws.amazon.com/security-ir/latest/userguide/monthly-report.html) | 인시던트 사후 보고서 섹션의 이름을 월별 보고서로 변경했습니다. 보고서가 인시던트 대응 팀의 모든 연락처로 발송되고, 발송 시간을 포함하고, 이메일 제목 줄 형식을 문서화한다는 점을 명확히 하도록 섹션을 업데이트했습니다. | 2026년 5월 13일 | 
| [온보딩 설명서 업데이트](https://docs.aws.amazon.com/security-ir/latest/userguide/deploy-configure.html) | 콘솔을 사용할 때 AWS Security Incident Response가 AWS Organizations 관리 계정에서 `AWSServiceRoleForSecurityIncidentResponse_Triage` 서비스 연결 역할을 자동으로 생성함을 명확히 하기 위해 AWS Security Incident Response 활성화 주제를 업데이트했습니다. API/CLI를 사용하여 Security Incident Response를 활성화하기 위한 지침의 링크를 추가했습니다. | 2026년 5월 7일 | 
| [API/CLI 주제를 사용하여 Security Incident Response 활성화 추가](https://docs.aws.amazon.com/security-ir/latest/userguide/enable-sir-cli.html) | 위임된 관리자 가입 및 관리 계정 가입 방법을 사용하여 AWS Security Incident Response를 활성화하기 위한 단계별 CLI 지침이 포함된 새 주제를 추가했습니다. | 2026년 5월 7일 | 
| [Amazon GuardDuty 및 서드 파티 조사 결과에 대한 선제적 대응 요구 사항을 명확히 함](https://docs.aws.amazon.com/security-ir/latest/userguide/setup-monitoring-and-investigation-workflows.html) | 선제적 대응을 사용하는 데 Amazon GuardDuty가 필요하지 않음을 명확히 했습니다. AWS Security Incident Response는 Security Hub CSPM 통합을 사용하여 서드 파티 위협 탐지 도구의 위협 알림을 모니터링하고 조사할 수도 있습니다. 탐지 서비스 요구 사항과 조사 결과 수집 구성의 가치를 정확하게 설명하도록 섹션을 업데이트했습니다. | 2026년 5월 5일 | 
| [EC2 Triage에 지원되는 운영 체제 추가](https://docs.aws.amazon.com/security-ir/latest/userguide/detect-and-analyze.html) | Linux 배포판(Amazon Linux 2, Amazon Linux 2023, Ubuntu, RHEL, CentOS, SLES 및 Debian) 및 Windows Server 버전을 포함하여 EC2 Triage 기능에 지원되는 운영 체제 목록을 추가했습니다. | 2026년 4월 29일 | 
| [`AWSSecurityIncidentResponseReadOnlyAccess`에 대한 정책 설명 업데이트](https://docs.aws.amazon.com/security-ir/latest/userguide/aws-managed-policies.html) | 정책을 업데이트하여 `security-ir:ListInvestigations` 작업을 추가했습니다. | 2026년 4월 22일 | 
| [`AWSSecurityIncidentResponseFullAccess`에 대한 정책 설명 업데이트](https://docs.aws.amazon.com/security-ir/latest/userguide/aws-managed-policies.html) | 정책을 업데이트하여 AWS Organizations 권한을 추가하고 MFA 조건을 제거했습니다. | 2026년 4월 22일 | 
| [`AWSSecurityIncidentResponseCaseFullAccess`에 대한 정책 설명 업데이트](https://docs.aws.amazon.com/security-ir/latest/userguide/aws-managed-policies.html) | 정책을 업데이트하여 `security-ir:ListInvestigations` 및 `security-ir:SendFeedback` 작업을 추가하고 MFA 조건을 제거했습니다. | 2026년 4월 22일 | 
| [AWS Security Incident Response에 대한 EC2 Triage 기능](https://docs.aws.amazon.com/security-ir/latest/userguide/detect-and-analyze.html) | AWS Security Incident Response에서 보안 조사 중에 AWS Systems Manager Run Command를 사용하여 Amazon Elastic Compute Cloud 인스턴스로부터 조사 정보를 수집할 수 있도록 하는 EC2 Triage 기능을 추가했습니다. EC2 Triage 사전 조건 및 기능을 문서화하도록 탐지 및 분석 페이지를 업데이트했습니다. | 2026년 4월 20일 | 
| [AWS Security Incident Response에 대한 EC2 Triage 기능](https://docs.aws.amazon.com/security-ir/latest/userguide/working-with-stacksets.html) | 격리만 및 EC2 Triage를 사용한 격리라는 두 가지 템플릿 옵션을 제공하도록 CloudFormation StackSets 설명서를 업데이트했습니다. EC2 Triage를 사용한 격리 템플릿에는 Amazon EC2 인스턴스에서 조사 데이터 수집을 위한 추가 권한이 포함됩니다. | 2026년 4월 20일 | 
| [규제 대상 고객에 대한 데이터 수집, 리전별 동작 및 규정 준수 지침](https://docs.aws.amazon.com/security-ir/latest/userguide/data-collection-and-usage.html) | 데이터 수집 및 사용, 데이터 레지던시 및 리전 동작, 데이터 액세스 및 권한에 대한 새로운 섹션을 추가했습니다. 규제가 적용되는 산업의 고객을 위한 공동 책임 및 메타데이터 분류 지침을 포함하도록 규정 준수 검증 섹션을 확장했습니다. | 2026년 4월 17일 | 
| [온보딩 가이드 업데이트](https://docs.aws.amazon.com/security-ir/latest/userguide/onboarding-guide.html) | 인시던트 대응 팀, 사례 유형 및 도구 통합을 위한 준비 단계, 사전 조건 및 간소화된 구성 워크플로를 포함한 새로운 단계별 구조로 온보딩 가이드를 업데이트했습니다. | 2026년 4월 7일 | 
| [AWS Security Incident Response 분류 서비스 역할 정책의 정책 설명 업데이트](https://docs.aws.amazon.com/security-ir/latest/userguide/aws-managed-policies.html) | 해당 서비스가 서비스 조정을 개선하고 잠재적 인시던트를 조사하기 위한 정보를 수집할 수 있도록 하는 변경 사항을 반영하여 AWS Security Incident Response 분류 서비스 역할 정책의 정책 설명을 업데이트합니다. | 2026년 3월 27일 | 
| [메타데이터 제출](#document-history-for-the-aws-security-incident-response-user-guide) | AWS Support 사례를 통해 메타데이터 제출에 대한 지침을 추가했습니다. | 2026년 3월 27일 | 
| [격리 기본 설정 제출](https://docs.aws.amazon.com/security-ir/latest/userguide/submit-containment-preferences.html) | AWS Support 사례를 통해 격리 기본 설정 제출에 대한 지침을 추가했습니다. | 2026년 3월 27일 | 
| [격리 StackSet 템플릿](https://docs.aws.amazon.com/security-ir/latest/userguide/working-with-stacksets.html) | 격리 StackSet CloudFormation 템플릿을 업데이트했습니다. | 2026년 3월 27일 | 
| [위임된 관리자 계정에 대한 AWS 리전 고려 사항을 명확히 함](https://docs.aws.amazon.com/security-ir/latest/userguide/considerations_important.html) | 초기 설정 중에 하나의 AWS 리전에서 위임된 AWS Security Incident Response 관리자 계정을 지정하지만, 해당 서비스는 지원되는 모든 AWS 리전에서 조직 전체 범위를 지원한다는 점을 명확히 했습니다. | 2026년 3월 20일 | 
| [격리 작업 기본 설정 정의](https://docs.aws.amazon.com/security-ir/latest/userguide/define-containment-preferences.html) | 현재 옵션과 일치하도록 격리 작업 기본 설정 섹션을 업데이트했습니다. | 2026년 3월 19일 | 
| [선제적 대응 및 알림 분류](https://docs.aws.amazon.com/security-ir/latest/userguide/setup-monitoring-and-investigation-workflows.html) | 사전 대응 및 알림 분류 워크플로가 선택 사항이라는 참조 내용을 제거했습니다. | 2026년 3월 3일 | 
| [응답 타임라인](https://docs.aws.amazon.com/security-ir/latest/userguide/what-to-expect-from-aws-sir-engineers.html) | 사례 승인에 15분 SLO, 사례 종결 전 고객 응답에 영업일 기준 5일로 응답 타임라인을 업데이트했습니다. | 2026년 2월 24일 | 
| [커뮤니케이션 모범 사례](https://docs.aws.amazon.com/security-ir/latest/userguide/communication-best-practices.html) | 중요한 정보 요청에 대한 고객 응답에 영업일 기준 5일로 사례 종결 타임라인을 업데이트했습니다. | 2026년 2월 24일 | 
| [AWS CloudShell를 사용하여 Security Incident Response과 상호 작용에 AWS CLI 참조 추가함](https://docs.aws.amazon.com/security-ir/latest/userguide/cshell-examples.html) | AWS Security Incident Response용 AWS Command Line Interface Reference 참조의 링크를 추가했습니다. | 2026년 2월 24일 | 
| [RACI 매트릭스](https://docs.aws.amazon.com/security-ir/latest/userguide/raci-matrix.html) | RACI 매트릭스에서 ‘CIRT 격리 작업 권한 부여’를 ‘격리 작업 권한 부여’로 업데이트했습니다. | 2026년 2월 13일 | 
| [격리 기본 설정](https://docs.aws.amazon.com/security-ir/latest/userguide/define-containment-preferences.html) | 격리 기본 설정 옵션을 '격리 작업 없음', '승인을 통한 격리', '자동 격리'에서 '승인 필요', '확인 항목 격리', '의심 항목 격리'로 업데이트하고 설명을 수정했습니다. | 2026년 2월 13일 | 
| [Security Incident Response의 사후 배포](https://docs.aws.amazon.com/security-ir/latest/userguide/post-deploy.html) | AWS Security Incident Response: 새 통합 및 OU 수준 구독 데모에 대한 링크를 추가했습니다. | 2026년 2월 4일 | 
| [모니터링 및 조사](https://docs.aws.amazon.com/security-ir/latest/userguide/monitoring-and-investigation.html) | 이 페이지의 소개 및 하위 섹션에 수정된 내용을 추가했습니다. | 2026년 2월 4일 | 
| [탐지 및 분석](https://docs.aws.amazon.com/security-ir/latest/userguide/detect-and-analyze.html) | 이 페이지의 소개 및 하위 섹션에 수정된 내용을 추가했습니다. | 2026년 2월 4일 | 
| [격리](https://docs.aws.amazon.com/security-ir/latest/userguide/contain.html) | 이 페이지에 수정된 내용을 추가했습니다. | 2026년 2월 4일 | 
| [AI 조사 에이전트](https://docs.aws.amazon.com/security-ir/latest/userguide/ai-investigative-agent.html) | 이 페이지에 고객 데이터 사용 면책 조항을 추가했습니다. 면책 조항: AI 조사 에이전트는 모델 훈련에 고객 데이터를 사용하지 않으며 고객 데이터를 서드 파티와 공유하지 않습니다. | 2026년 2월 4일 | 

**Topics**


|  변경  |  설명  |  날짜  | 
| --- | --- | --- | 
| 멤버십 취소 | [멤버십 및 서비스가 결제 주기 종료 시점이 아닌 취소 즉시 종료된다는 것을 알리도록 멤버십 취소 페이지](https://docs.aws.amazon.com//security-ir/latest/userguide/cancel-membership.html)를 업데이트했습니다. | 2025년 11월 20일 | 
| AWS 관리형 정책 | [서비스에서 제공되는 작업 목록에 사례 업데이트, 사례 설명 생성, 사례 나열, 사례 설명 나열](https://docs.aws.amazon.com/security-ir/latest/userguide/aws-managed-policies.html#AWSSecurityIncidentResponseServiceRolePolicy)을 추가했습니다. | 2025년 11월 19일 | 
| 서비스 연결 역할 사용 | [서비스에서 제공되는 작업 목록에 사례 업데이트, 사례 설명 생성, 사례 나열, 사례 설명 나열](https://docs.aws.amazon.com/security-ir/latest/userguide/using-service-linked-roles.html)을 추가했습니다. | 2025년 11월 19일 | 
| 통신 기본 설정 | 생성 및 업데이트 [새로운 기능 설명서에 통신 기본 설정 섹션이 추가됨](https://docs.aws.amazon.com/security-ir/latest/userguide/communication-preferences.html) | 2025년 11월 12일 | 
| 온보딩 가이드 추가 및 업데이트 | 생성 및 업데이트 [다음 섹션을 포함한 온보딩 가이드가 추가됨](https://docs.aws.amazon.com/security-ir/latest/userguide/onboarding-guide.html)<br />[Security Incident Response 활성화](https://docs.aws.amazon.com/security-ir/latest/userguide/deploy-configure.html) 섹션을 추가했습니다.<br />[Security Incident Response 엔지니어가 위협 격리 작업을 수행하도록 권한 승인](https://docs.aws.amazon.com/security-ir/latest/userguide/authorize-security-incident-response.html) 섹션을 추가했습니다.<br />[Security Incident Response의 사후 배포](https://docs.aws.amazon.com/security-ir/latest/userguide/post-deploy.html) 섹션을 추가했습니다.<br />[인시던트 대응 팀 업데이트](https://docs.aws.amazon.com/security-ir/latest/userguide/support-case.html) 섹션이 추가되었습니다.<br />[GuardDuty 결과 및 억제 규칙](https://docs.aws.amazon.com/security-ir/latest/userguide/guard-duty.html) 섹션이 추가되었습니다.<br />[Amazon EventBridge](https://docs.aws.amazon.com/security-ir/latest/userguide/amazon-eventbridge.html) 섹션이 추가되었습니다.<br />[통합 및 외부 도구 워크플로](https://docs.aws.amazon.com/security-ir/latest/userguide/integrations-external-tooling.html) 섹션이 추가되었습니다.<br />[외부 도구 워크플로](https://docs.aws.amazon.com/security-ir/latest/userguide/external-tooling.html) 섹션이 추가되었습니다. | 2025년 11월 12일 | 
| 규정 준수 및 결제 언어 업데이트 | [AWS 보안 인시던트 대응은 프레임워크에서 다루지 않는다는 문구가 제거되도록 업데이트되었습니다. AWS 보안 인시던트 대응은 이제 HITRUST에서 다루며 향후 더 많은 기능이 제공될 예정입니다.](https://docs.aws.amazon.com/security-ir/latest/userguide/compliance-validation.html)<br />AWS 보안 인시던트 대응을 추가하도록 [가시성 및 제어](https://docs.aws.amazon.com/security-ir/latest/userguide/visibility-and-alerting.html)가 업데이트되었습니다.<br />서비스 결제 기간을 명확히 하기 위해 [멤버십 취소](https://docs.aws.amazon.com/security-ir/latest/userguide/cancel-membership.html)가 업데이트되었습니다.<br />일반적인 작업 시 AWS 보안 인시던트 대응 사용을 시작하기 위한 추가 컨텍스트를 제공하는 비디오를 [시작하기](https://docs.aws.amazon.com/security-ir/latest/userguide/getting-started.html)에 추가했습니다. | 2025년 8월 15일 | 
| 업데이트됨 - [AWSSecurityIncidentResponseServiceRolePolicy](aws-managed-policies.md#AWSSecurityIncidentResponseServiceRolePolicy) | 이제 정책에 `"organizations:DescribeAccount"`, `"organizations:ListDelegatedAdministrators"`에 대한 두 가지 새 작업과 새 조건이 포함됩니다.<pre><br />"Condition": {<br />      "StringEquals": {<br />        "aws:ResourceAccount": "${aws:PrincipalAccount}"<br />      }<br />    }<br />            </pre> | TBD | 
| 기능 업데이트: 특정 조직 단위(OU) 또는 전체 AWS 조직 구독 | 특정 조직 단위(OU) 또는 전체 AWS 조직을 구독하기 위한 업데이트를 반영하도록 사용자 인터페이스의 도움말 패널이 업데이트되었습니다.<br />[조직 단위(OU)의 멤버십 관리](https://docs.aws.amazon.com/security-ir/latest/userguide/managing-membership-with-ou.html)를 위한 새 페이지 생성<br />새로운 OU 관리 기능을 반영하도록 AWS Organizations에 관련된 페이지가 업데이트되었습니다. | 2025년 8월 7일 | 
| 업데이트된 Service Quotas | 사용자를 [AWS 보안 인시던트 대응 엔드포인트 및 할당량](https://docs.aws.amazon.com/general/latest/gr/securityir.html)에 대한 AWS 일반 참조 가이드로 안내하도록 Service Quotas 페이지가 업데이트되었습니다. | 2025년 8월 7일 | 
| 사용자 피드백 업데이트 | 서비스에 대한 하이퍼링크가 [AWS 보안 인시던트 대응 사례](https://docs.aws.amazon.com/security-ir/latest/userguide/cases.html)에 추가되었습니다.<br />[보안 기술 가이드용](https://docs.aws.amazon.com/security-ir/latest/userguide/introduction.html)의 컴퓨터 보안 인시던트 처리 가이드 SP 800-61 r3을 반영하도록 업데이트되었습니다. | 2025년 8월 7일 | 
| AWS Security Incident Response와 Amazon EventBridge 통합을 위한 페이지 추가 | AWS Security Incident Response에 Amazon EventBridge가 어떻게 통합되는지 설명하는 새로운 콘텐츠 섹션입니다. | 2025년 6월 26일 | 
| 서비스 자격을 지원하기 위한 권한을 추가하는 SLR 업데이트 | [AWSSecurityIncidentResponseTriageServiceRolePolicy](aws-managed-policies.md#AWSSecurityIncidentResponseTriageServiceRolePolicy)가 업데이트되어 security-ir:GetMembership, security-ir:ListMemberships, security-ir:UpdateCase, guardduty:ListFilters, guarduty:UpdateFilter, guardduty:DeleteFilter 및 guardduty:GetAdministratorAccount 권한이 추가되었습니다. guardduty:GetAdministratorAccount가 추가되어 위임 계정에서 GuardDuty 자동 아카이브 필터를 쉽게 관리할 수 있습니다. | 2025년 6월 2일 | 
| 리소스 업데이트 | 고객이 사용할 수 있는 활성 워크숍을 반영하도록 https://docs.aws.amazon.com/security-ir/latest/userguide/appendix-b-incident-response-resources.html\#playbook-resources가 업데이트되었습니다. | 2025년 5월 23일 | 
| 서비스는 일본어를 지원합니다. | 일본 현지 시간으로 일본어 지원을 확인할 수 있도록 지원되는 구성이 업데이트되었습니다. 영어는 전 세계에서 지원됩니다. | 2025년 5월 13일 | 
| 콘텐츠 업데이트 및 고객 피드백. |  위임 관리자 계정을 설정의 일부로 사용할 때 추가 태스크를 반영하도록 https://docs.aws.amazon.com/security-ir/latest/userguide/select-a-membership-account.html에 참고 사항이 추가되었습니다.<br /> [서비스 생성 사례](https://docs.aws.amazon.com/security-ir/latest/userguide/responding-to-an-aws-generated-case.html)와 [탐지 및 분석](https://docs.aws.amazon.com/security-ir/latest/userguide/detect-and-analyze.html) 작업 시 고객 경험이 업데이트되었습니다.<br /> [멤버십 취소](https://docs.aws.amazon.com/security-ir/latest/userguide/cancel-membership.html) 시 결제에 미치는 영향을 보다 명확하게 파악할 수 있도록 계정 취소 세부 정보가 업데이트되었습니다. | 2025년 5월 9일 | 
| 지원되는 새 리전 3개 추가 |  https://docs.aws.amazon.com/security-ir/latest/userguide/supported-configs.html에 3개의 새 리전 뭄바이, 상파울루, 파리가 추가되었습니다. | 2025년 5월 7일 | 
|  업데이트됨: 문서에 대한 고객 의견에 따른 업데이트  | 여러 페이지의 철자 및 문법 오류가 수정되었습니다.<br /> security-ir을 서비스 접두사로 정확하게 반영하도록 https://docs.aws.amazon.com/en\_us/security-ir/latest/userguide/organizations\_permissions.html이 업데이트되었습니다.<br /> Route53 및 DNS와 관련하여 https://docs.aws.amazon.com/security-ir/latest/userguide/source-containment.html에 참고 사항이 추가되었습니다. |  2025년 2월 7일  | 
|  업데이트됨: 문서에 대한 고객 의견에 따른 업데이트  | https://docs.aws.amazon.com/security-ir/latest/userguide/setup-monitoring-and-investigation-workflows.html이 스택 세트 템플릿으로 업데이트되었습니다.<br /> triage.security-ir.com 항목이 triage.security-ir.amazonaws.com으로 수정되었습니다.<br /> https://docs.aws.amazon.com/security-ir/latest/userguide/contain.html에 AWSSupport-ContainEC2Reversible에 대한 추적되는 연결 참고 사항이 추가되었습니다.<br /> https://docs.aws.amazon.com/security-ir/latest/userguide/managing-associated-accounts.html에서 끊어진 링크가 수정되었습니다.<br /> https://docs.aws.amazon.com/security-ir/latest/userguide/select-a-membership-account.html에 멤버십 계정에 대한 정의가 추가되었습니다.<br /> https://docs.aws.amazon.com/en\_us/security-ir/latest/userguide/using-service-linked-roles.html에 AWS Organizations 관리 계정에 대한 설명 참고 사항이 추가되었습니다. |  2024년 12월 20일  | 
|  업데이트됨: 문서에 대한 고객 의견에 따른 업데이트  | 텍스트에서 중복된 AWS AWS를 여러 개 제거했습니다.<br />https://docs.aws.amazon.com/security-ir/latest/userguide/sir\_tagging.html과 https://docs.aws.amazon.com/security-ir/latest/userguide/service-name-info-in-cloudtrail.html에서 끊어진 링크가 수정되었습니다.<br />https://docs.aws.amazon.com/security-ir/latest/userguide/contain.html이 업데이트되었습니다. 첫 번째 단락에서 >가 제거되었습니다. AWSSupport-ContainEC2Reversible이 AWSSupport-ContainEC2Instance로 바뀌었습니다. AWSSupport-ContainIAMReversible이 AWSSupport-ContainIAMPrincipal로 바뀌었습니다. AWSSupport-ContainS3Reversible이 AWSSupport-ContainS3Resource로 바뀌었습니다.<br />https://docs.aws.amazon.com/en\_us/security-ir/latest/userguide/issues.html의 서식이 업데이트되었습니다.<br />고객에게 지원 티켓을 통해 Security Incident Response에 문의하도록 안내할 때 이제 https://docs.aws.amazon.com/security-ir/latest/userguide/understand-response-teams-and-support.html에서 지원 양식에서 선택할 수 있는 옵션을 제공합니다.<br />https://docs.aws.amazon.com/security-ir/latest/userguide/logging-and-events.html에서 CloudWatch Events가 제거되고 EventBridge로 바뀌었습니다.<br />ttps://docs.aws.amazon.com/security-ir/latest/userguide/technique-access-containment.html에서 문법이 업데이트되었습니다.<br />https://docs.aws.amazon.com/security-ir/latest/userguide/security-incident-response-guide.html에서 게시 날짜가 제거되고 이 표의 업데이트로 바뀌었습니다. |  2024년 12월 10일  | 
|  업데이트됨: AWS 관리형 정책 및 서비스 연결 역할  |  [관리형 정책 및 서비스 연결 역할 업데이트](https://docs.aws.amazon.com/security-ir/latest/userguide/aws-managed-policies.html#managed-policy-updates)  |  2024년 12월 1일  | 
|  서비스 시작  |  re:Invent 2024에서 서비스 출시를 위한 초기 서비스 문서  |  2024년 12월 1일  | 