Varonis Joins AWS Security Hub Extended to Power Unified, Data-Centric Security 

The integration helps security teams cut through alert noise, accelerate remediation, and protect sensitive data in AWS and across their entire data estate.
2 min read
Last updated May 20, 2026
AWS Security Hub Integration

As organizations accelerate cloud adoption and embrace AI-driven innovation, security teams are facing a growing challenge: too many tools, too many signals, and not enough unified insight to act with confidence. 

AWS and Varonis help security teams cut through the noise, focus on critical threats, and stop breaches that put sensitive data at risk. 

That’s why Varonis is excited to announce that we are available on AWS Security Hub Extended — providing data security across SaaS applications, multi-cloud, and hybrid environments while continuing to grow our partnership with AWS and expand our ecosystem of partnership offerings. 

Security Hub Extended: A unified security solution 

AWS Security Hub Extended represents a major evolution in how organizations approach security. 

Built on the foundation of AWS Security Hub, the Extended plan brings together full-stack security operations and procurement, bridging AWS-native services and curated partner solutions into a single, unified experience.  

Security Hub already aggregates findings across threats, vulnerabilities, misconfigurations, and sensitive data into a centralized view. With the Extended plan, AWS takes this further by enabling customers to integrate and operationalize a broader ecosystem of security tools—without adding complexity.  

Security Hub Extended allows organizations to: 

  • Unify security signals across environments for a consolidated view of risk 
  • Operate from a single console instead of managing multiple tools and dashboards 
  • Leverage near real-time analytics and prioritized insights to focus on what matters most  
  • Extend protection beyond AWS through curated partner solutions across identity, endpoint, network, data, AI, and more  

It also simplifies how security is consumed and managed: 

  • Unified procurement and billing through AWS 
  • Pay-as-you-go pricing with no long-term commitments 
  • Pre-integrated solutions that reduce deployment and operational overhead 

With Security Hub Extended, security teams spend less time integrating tools and managing vendors and more time reducing risk. 

Why Varonis + Security Hub Extended matters 

Varonis brings a critical capability to this unified model: unified data security. 

Security Hub Extended aggregates signals across infrastructure, identity, and endpoint layers. Varonis complements this by ensuring organizations have deep visibility into their most critical asset—sensitive data—and how it is accessed and used. 

Varonis ingests prioritized findings from AWS Security Hub and enriches them with data sensitivity, identity, and user behavior to deliver a single view of risk. That visibility extends across SaaS, multi‑cloud, and hybrid environments. 

Bringing data context to security operations 

Varonis continuously discovers and classifies sensitive data across AWS environments and monitors access and usage. This provides essential context that enhances Security Hub findings, helping teams understand not just that something happened, but what data is at risk and why it matters. 

Turning signals into actionable risk 

AWS Security Hub correlates and prioritizes security signals, like threat detection and vulnerability findings, from AWS services using a common data model. Varonis connects those signals to sensitive data, abnormal access patterns, and risky data activity. This enables security teams to focus on real threats where data is at risk, not alerts without impact. 

Reducing risk, not just detecting it 

While Security Hub helps prioritize risk, Varonis helps eliminate it. By automating remediation of excessive permissions, misconfigurations, and exposure risks, Varonis enables organizations to proactively reduce their attack surface and enforce least privilege.  

Accelerating response across the attack surface 

With Varonis integrated into Security Hub workflows, security teams can investigate and respond to threats across identity, infrastructure, and data from a single pane of glass across the entire data environment, leading to faster, more effective responses. 

Looking ahead 

Security teams don’t need more tools. They need better, faster outcomes. 

Joining AWS Security Hub Extended is more than a technical integration; it’s a strategic step in how Varonis delivers value through its partnership with AWS. We are committed to embedding data security into the platforms and ecosystems our customers rely on every day. 

Varonis is excited about our continued partnership with AWS and the opportunity to be part of Security Hub Extended. 

Together, we’re enabling organizations to shift from fragmented security operations to a unified, data-centric approach to protecting what matters most — across AI, cloud, SaaS, and multicloud environments. 

Ready to get started? Check out Varonis on Security Hub Extended now.  

What should I do now?

Below are three ways you can continue your journey to reduce data risk at your company:

1

Schedule a demo with us to see Varonis in action. We'll personalize the session to your org's data security needs and answer any questions.

2

See a sample of our Data Risk Assessment and learn the risks that could be lingering in your environment. Varonis' DRA is completely free and offers a clear path to automated remediation.

3

Follow us on LinkedIn, YouTube, and X (Twitter) for bite-sized insights on all things data security, including DSPM, threat detection, AI security, and more.

Try Varonis free.

Get a detailed data risk report based on your company’s data.
Deploys in minutes.

Keep reading

Varonis tackles hundreds of use cases, making it the ultimate platform to stop data breaches and ensure compliance.

varonis-discovers-local-file-inclusion-in-aws-remote-mcp-server-via-cli-shorthand-syntax
Varonis Discovers Local File Inclusion in AWS Remote MCP Server via CLI Shorthand Syntax
Varonis uncovers a local file inclusion vulnerability in the AWS Remote MCP Server, exposing how authenticated access can lead to sensitive data exposure.
azure-app-mirage:-bypassing-application-impersonation-safeguard
Azure App-Mirage: Bypassing Application Impersonation Safeguard
Varonis Threat Labs discovered a loophole allowing attackers to impersonate Microsoft applications by creating malicious apps with deceptive names.
where-are-my-keys?!-ransomware-group-steals-aws-keys-to-advance
Where Are my Keys?! Ransomware Group Steals AWS Keys to Advance
Ransomware groups now target AWS control planes using stolen keys and Pacu. Learn how Varonis detects, investigates, and stops these cloud threats.