<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>Security Automation — Things Worth Sharing</title><description>Posts tagged Security Automation.</description><link>https://cloudsecop.net/</link><item><title>GuardDuty auto-remediation: isolate EC2 and revoke IAM</title><link>https://cloudsecop.net/en/blog/guardduty-auto-remediation-en/</link><guid isPermaLink="true">https://cloudsecop.net/en/blog/guardduty-auto-remediation-en/</guid><description>An auto-remediation pipeline for GuardDuty using EventBridge and Lambda: isolate instances, snapshot for forensics, revoke credentials, and scale it across an Organization.</description><pubDate>Mon, 14 Apr 2025 00:00:00 GMT</pubDate><category>AWS</category><category>Cloud Security</category><category>GuardDuty</category><category>Security Automation</category><category>EventBridge</category><author>KhaVan</author></item><item><title>AWS IAM Access Key rotation: Lambda + Secrets Manager</title><link>https://cloudsecop.net/en/blog/iam-key-auto-rotation/</link><guid isPermaLink="true">https://cloudsecop.net/en/blog/iam-key-auto-rotation/</guid><description>An AWS-native solution for rotating, disabling, and deleting IAM access keys on policy — the multi-account architecture, trade-offs, and what operating it actually takes.</description><pubDate>Sun, 19 Jan 2025 00:00:00 GMT</pubDate><category>AWS</category><category>IAM</category><category>Security Automation</category><category>Secrets Manager</category><category>Lambda</category><author>KhaVan</author></item></channel></rss>