Issue Management
Issue Management gives you a central place to track all security issues detected by Security Hub. You can search, filter, change issue status individually or in bulk, and review a full activity history for every issue.
Issue statuses
Each issue carries one of four statuses:
| Status | Badge color | Meaning |
|---|---|---|
| Open | Blue | Misconfiguration is active and needs attention |
| False Positive | Gray | You have confirmed this is not a real issue in your organization's context |
| Accepted Risk | Yellow | You have reviewed the risk and accepted it — no immediate action required |
| Resolved | Green | The misconfiguration has been fixed; Security Hub confirmed this on rescan |
note
Resolved is set automatically by the system when a rescan confirms the issue no longer exists. You cannot manually mark an issue as Resolved. If the misconfiguration reappears after a Resolved status, the system automatically moves the issue back to Open.
warning
Breaking change (v1.2.1): The "Ignored" status from previous versions has been replaced by False Positive and Accepted Risk, which carry clearer meanings aligned with standard security triage practices.
In this section
- Issue List — view all issues in a table, filter by scan type or status, change status in bulk, and search by issue name, asset, reference, or VPC.
- Issue Detail — open any issue to see its description, remediation steps, affected asset details, and full activity history.