A fully serverless solution for querying data stored in Amazon Security Lake using natural language (human language) with Amazon Q in QuickSight.
Uses Security Lake as the data lake which has native ingestion.
Creates Amazon Athena views from tables created by Security Lake for Security Hub findings, CloudTrail logs and VPC Flow Logs to define the interesting fields from each of the log sources.
Each of these views are ingested into a QuickSight dataset.
Generates analyses and dashboards to query CloudTrail logs using natural language.
Implements three datasets: Security Hub findings, CloudTrail logs, and VPC Flow Logs.
Uses QuickSight to build, discover, and share meaningful insights.
Offers named entities that are added or removed as needed for user’s use case.
Named entities used to contextualize and help prioritize data.
Uses Q topics to label columns in the dataset that are human-readable and creates named entity to present contextual and multi-visual answers in response to questions.