Responding to an AWS generated case
AWS Security Incident Response might create an outbound notification or case when you need to act on or be aware of something that potentially impacts your account or resources. This only occurs if you enabled the proactive response and alert triaging workflows as part of your subscription.
These notifications appear as Security Incident Response cases with the prefix "[Proactive case]" in the AWS Security Incident Response console. To view and manage these cases, complete the following steps:
-
Open the Security Incident Response console at https://console.aws.amazon.com/security-ir/
-
Choose Cases.
-
You see all cases, including those with the "[Proactive case]" prefix.
You can update, resolve, and reopen these cases as needed. You can communicate directly with the AWS Security Incident Response team through these cases, ensuring efficient handling of potential security issues.