Skip to main content

Issue Management

Issue Management gives you a central place to track all security issues detected by Security Hub. You can search, filter, change issue status individually or in bulk, and review a full activity history for every issue.

Issue statuses

Each issue carries one of four statuses:

StatusBadge colorMeaning
OpenBlueMisconfiguration is active and needs attention
False PositiveGrayYou have confirmed this is not a real issue in your organization's context
Accepted RiskYellowYou have reviewed the risk and accepted it — no immediate action required
ResolvedGreenThe misconfiguration has been fixed; Security Hub confirmed this on rescan
note

Resolved is set automatically by the system when a rescan confirms the issue no longer exists. You cannot manually mark an issue as Resolved. If the misconfiguration reappears after a Resolved status, the system automatically moves the issue back to Open.

warning

Breaking change (v1.2.1): The "Ignored" status from previous versions has been replaced by False Positive and Accepted Risk, which carry clearer meanings aligned with standard security triage practices.

In this section

  • Issue List — view all issues in a table, filter by scan type or status, change status in bulk, and search by issue name, asset, reference, or VPC.
  • Issue Detail — open any issue to see its description, remediation steps, affected asset details, and full activity history.