Module: guardduty
This module enables AWS GuardDuty in one region of one account with comprehensive threat detection features and optionally sets up an SNS topic to receive notifications of its findings.
The module supports enabling various GuardDuty detector features including:
- S3 Data Events Protection - Monitors S3 data plane operations for suspicious activity
- EKS Audit Logs - Analyzes Kubernetes audit logs for threat detection in EKS clusters
- EBS Malware Protection - Scans EC2 instance EBS volumes for malware
- Lambda Network Logs - Monitors Lambda function network activity for threats
- Runtime Monitoring - Provides threat detection for EC2, ECS, and EKS runtime environments with agent management
- EKS Runtime Monitoring - Standalone EKS runtime threat detection (alternative to full Runtime Monitoring)