AWS Security Hub gives users a comprehensive view of your high-priority security alerts and security posture across AWS accounts. With Security Hub, users have a single place that aggregates, organizes, and prioritizes security alerts, or findings, from multiple AWS services, such as Amazon GuardDuty, Amazon Inspector, Amazon Macie, AWS Identity and Access Management (IAM) Access Analyzer, and AWS Firewall Manager, as well as from AWS Partner solutions.
N/A
Grafana OnCall
Score 7.0 out of 10
N/A
Grafana OnCall is an open source, easy-to-use on-call management tool built to help teams improve their collaboration and resolve incidents faster. Grafana OnCall (formerly known as Amixr) was started in 2018 at Amixr Inc., which Grafana Labs acquired in 2021.
AWS Security Hub is mainly for protecting your software, video games, web application, etc... from external digital threats. This is a must for all software out there that can afford it. This also require a decent amount of resources to mitigate problems so that the monitoring page isn't overloaded. So overall, a large amount of budget and manpower is required to maintain this product.
One of the greatest drawback in any big companies is that different teams within an IT departments do not know what the others do. The worst case scenario is than Service Desk doesn't know where the issue resolution is and can not provide business with estimation recovery time as well as any update about the root cause of an issue. Grafana OnCall is the best tool that solved this misscolaboration in our company.
Not easy to read past data, especially once it moves into Glacier deep storage
performance is somewhat sluggish ... other systems are much faster to analyze data
Doesn't always provide a remediation solution or suggested fix like other 3rd party tools like Qualys.
It's hard to get the initial configuration and enrollment completed as there's a lot of manual intervention for every configured rule that needs to be enabled
AWS always good with usability and same here for AWS Security Hub. A lot of good documentation is available to read and configure your own. We also started with looking at the videos and documentation to configure automation for our compliance checks. And to configure there are very less steps to be followed which is a very good thing for faster configuration.
setting up the Grafana OnCall functionality is complex but if you setup this and you know how to setup then the rest is easy. IAC is provided with terraform The UI for the alert groups shows the alerts in one view and from there you can go to the relevant alert trigger to solve the problems.
AWS stacks up very similarly to Splunk but being that it's an AWS tool it is better able to natively monitor our AWS footprint, unlike splunk which requires an appliance and / or forwarding agent for it to work properly. The same can be said about some other tools like Dynatrace. Dynatrace has a much more pleasant user interface that the senior management seems to like more, but AWS Security Hub has better options, a more straightforward rules engine and is less expensive than both Splunk and Dynatrace
Grafana OnCall is integrated withini Grafana Cloud. We use this from one glass of view perspectief. One system , one UI to easy find the problems and solve them. It is also included in the Grana Cloud license, a single party with whom you do business and can receive discounts. we have switched from OpsGenie