AWS ArchiveFindings
Archives specified GuardDuty findings in a regional detector.
Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities. This may include stopping spec...
View on MITRE ATT&CK →Archives specified GuardDuty findings in a regional detector.
Creates a GuardDuty finding filter, optionally with an automatic archive action.
Creates a GuardDuty trusted IP list and optionally requests activation.
Deletes specified CloudWatch alarms in an account and Region.
Deletes an AWS Config rule and its evaluation results.
Deletes a customer-managed AWS Config recorder in one Region.
Deletes an AWS Config delivery channel after customer-managed recording is stopped.
Deletes a regional GuardDuty detector, disabling GuardDuty for that account and Region.
Deletes GuardDuty member records from an administrator’s regional detector.
Legacy API for disassociating a GuardDuty member from its administrator.
Disassociates specified members from a regional GuardDuty administrator.
Changes the mute state of a Security Command Center finding.
Removes the calling member account from its AWS organization.
Requests removal of an extension from an Azure Arc-enabled server.
Deletes an Azure Monitor activity log alert rule.
Deletes an Azure Monitor metric alert rule.
Creates or updates a Defender for Cloud alert suppression rule.
Updates the legacy Defender for Cloud agent auto-provisioning setting.
Changes a Microsoft Defender for Cloud plan configuration at a supported scope.
Deletes a Microsoft.Security security solution resource.
Removes a specified member account from an AWS organization.
Schedules KMS key deletion and makes the pending key unavailable for cryptographic operations.
Updates legacy Security Command Center organization settings through a deprecated API.
Stops the named customer-managed AWS Config recorder from recording its configured resource types.
Suspends GuardDuty monitoring for specified member accounts in a Region.
Updates a regional GuardDuty detector, including its enabled state and protection features.
Updates a GuardDuty trusted IP list configuration and activation request.