Chris Hughes

Qualys Monitoring/Alerting in AWS

Discussion created by Chris Hughes on Sep 20, 2019



I am assisting with implementing Qualys and I am looking for some feedback about how to execute a couple of activities.


I am looking to enforce the Qualys Cloud Agent installation if a provisioned instance is missing the agent, as well as alert on instances which are missing the Qualys Cloud Agent. 


For the enforcement of the Qualys Cloud Agent installation I am thinking of utilizing AWS Config to assess instances for its presence and trigger a Lambda function if the config rule is failed, as well as send an SNS notification. Would this be the most efficient method or are there other recommendations?