A collection of configuration templates for Amazon Detective resources as well as security controls for monitoring and protecting Amazon Detective configuration such as Config Rules, CloudWatch Alarms, EventBridge Rules, IAM policies, and more.
This template creates an AWS Detective Organization Admin resource to designate a Detective administrator account for the organization in the current region. If the account does not have Detective enabled, then this resource enables Detective for that account and creates a new behavior graph.
This template creates an invitation to join a Detective behavior graph. The administrator account can choose whether to send an email notification of the invitation to the root user email address of the AWS account. In this example, the email notification is blocked.
This template creates an invitation to join a Detective behavior graph. The administrator account can choose whether to send an email notification of the invitation to the root user email address of the AWS account.
This template creates an AWS Detective behavior graph. The behavior graph is created with the specified tags.