Amazon Web Services
HDI Group, a German insurance company, has implemented an innovative automated security and compliance issue remediation system using AWS cloud native services. The architecture leverages AWS Config, GuardDuty, and IAM Access Analyzer to scan for security issues, with findings centralized in Security Hub. For compliance, HDI uses Prowler, an open-source tool hosted on Fargate, to perform ISO 27001 scans. Remediation is handled through Lambda functions triggered by EventBridge rules. The system covers 20 AWS accounts with over 50 standard remediations, significantly reducing security risks. Integration with on-premises systems is achieved through Service Now, providing a unified view for security operations across cloud and on-premises environments. This architecture enables HDI to maintain robust security and compliance while allowing product teams to focus on delivering value to customers.