Detective PNG and SVG Icon
Amazon Detective helps you investigate potential security issues by analyzing and visualizing security data from multiple AWS sources like GuardDuty and CloudTrail.
Last Modified: August 29, 2025
16px
32px
48px
64px
Details
Key Features
- Analyzes security events to identify root causes.
- Uses machine learning for threat investigation.
- Integrates with GuardDuty and Security Hub.
- Provides visualizations for faster analysis.
Common Use Cases
- Investigate AWS security incidents with graph-based analysis
- Identify unusual API activity patterns
- Correlate multiple security findings into a single case
Explore More Icons
Lightsail for Research
Amazon Lightsail for Research provides pre-configured virtual research environments with tools and computing resources for researchers and students.
Managed Service for Apache Flink
Amazon Managed Service for Apache Flink is a fully managed service for building and running real-time stream processing applications using Apache Flink.
Textract
Amazon Textract is an AI service that automatically extracts text, tables, and other data from scanned documents and PDFs.
Snapshot
Snapshot refers to point-in-time backups of EBS volumes or file systems, allowing easy restore and replication of AWS storage resources.
DocumentDB
Amazon DocumentDB is a scalable, fully managed document database service that supports MongoDB workloads.
Application Discovery Service
AWS Application Discovery Service helps you plan migration projects by collecting usage and configuration data from your on-premises servers.
Auto Scaling
AWS Auto Scaling automatically adjusts the capacity of your AWS resources to maintain steady, predictable performance at the lowest possible cost.
Elemental Server
AWS Elemental Server is an on-premises video processing system that converts input video for distribution to TVs, PCs, and mobile devices.
Maintenance Windows
AWS Systems Manager Maintenance Windows lets you define a schedule for when to perform administrative tasks on your instances.
Cloud9
AWS Cloud9 is a cloud-based integrated development environment (IDE) that lets you write, run, and debug code using just a browser.
Keyspaces
Amazon Keyspaces is a scalable, highly available, and managed Apache Cassandra-compatible database service.
Security Incident Response
AWS Security Incident Response provides tools and guidance for detecting, responding to, and recovering from security incidents within AWS environments.
Firewall Manager
AWS Firewall Manager is a security management service that makes it easier to centrally configure and manage firewall rules across multiple AWS accounts and resources.
Device Farm
AWS Device Farm is an app testing service that lets you test and interact with your Android, iOS, and web apps on real, physical devices hosted by AWS.
CloudShell
AWS CloudShell is a browser-based shell that provides command-line access to AWS services and tools directly from the AWS Management Console.
Account
AWS Account refers to your uniquely identified entity used to access AWS services and manage resources securely.
Activate
AWS Activate is a program designed to provide startups with free tools, resources, technical support, and AWS credits to help them grow and build on AWS.
Cloud Control API
AWS Cloud Control API is a set of common APIs for creating, reading, updating, deleting, and listing cloud resources across AWS and third-party services.
SageMaker Ground Truth
Amazon SageMaker Ground Truth is a data labeling service that uses human and machine learning techniques to generate high-quality labeled datasets.
User Notifications
AWS User Notifications is a service that lets you centrally manage and deliver alerts and notifications from AWS services.
Notebook
Amazon SageMaker Notebook is a fully managed Jupyter notebook environment for developing, training, and deploying machine learning models.
Elastic Container Registry
Amazon Elastic Container Registry (ECR) is a fully managed Docker container registry that makes it easy to store, manage, and deploy container images.
EMR Engine
Amazon EMR Engine is the processing engine component within Amazon EMR that enables scalable, distributed big data processing using frameworks like Spark and Hadoop.
Fargate
AWS Fargate is a serverless compute engine for containers that lets you run ECS and EKS containers without managing servers or clusters.