AWS ArchiveFindings
Archives GuardDuty findings to suppress active security alerts from SOC visibility.
All events with tag GuardDuty.
Archives GuardDuty findings to suppress active security alerts from SOC visibility.
Creates a GuardDuty finding filter that automatically suppresses or highlights findings matching specified criteria.
Creates a GuardDuty IP set — a list of trusted or known malicious IP addresses used in threat intelligence.
Disables and permanently deletes a GuardDuty detector in the region, stopping all threat detection.
Removes member accounts from a GuardDuty administrator account, ending the delegated monitoring relationship.
Disassociates the current account from its GuardDuty administrator account, ending the delegated monitoring relationship.
Disassociates specified member accounts from a GuardDuty administrator account.
Stops GuardDuty from monitoring specified member accounts under an administrator account.
Updates the configuration of a GuardDuty detector, such as enabling or disabling specific threat detection data sources.
Updates the feedback status on GuardDuty findings, marking them as useful or not useful.
Modifies the IP addresses or CIDR ranges in a GuardDuty IP set used for threat intelligence.