Sample demonstrating how to use AWS Systems Manager Inventory to detect file changes on EC2 instances and publish findings to AWS Security Hub and Amazon Security Lake.
-
Updated
Jan 28, 2026 - Python
Sample demonstrating how to use AWS Systems Manager Inventory to detect file changes on EC2 instances and publish findings to AWS Security Hub and Amazon Security Lake.
Normalise security alerts from six SIEM/vendor formats into one OCSF (1.8.0) Detection Finding schema. Synthetic data; production-quality reference for OCSF normalisation.
Add a description, image, and links to the security-lake topic page so that developers can more easily learn about it.
To associate your repository with the security-lake topic, visit your repo's landing page and select "manage topics."