Description | This article describes the equired IAM Permissions for Security Hub and Kinesis for AWS integration. |
Scope | FortiSIEM. |
Solution |
FortiSIEM integrates with several AWS services (such as CloudTrail, Security Hub, and Kinesis) to collect and process security events. To ensure secure integration, it is recommended to assign least privilege IAM permissions.
Minimum IAM Permissions:
FortiSIEM requires access to read CloudTrail notifications from SQS queues:
FortiSIEM ingests findings from Security Hub and may need to enable the following services:
FortiSIEM ingests findings from Security Hub and may need to enable the following services:
Related documents: AWS Kinesis with FortiSIEM - FortiSIEM documentation Controlling access to Amazon Kinesis Data Streams resources using IAM - AWS documentation |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.