SHIP

AWS Security Health Improvement Program

AWS SHIP Partner

Know your security risks. Fix them fast.

Platformr delivers a free AWS Security Assessment, evaluating 11 key AWS security services against the AWS Security Health Improvement Program (SHIP) framework. See your risks clearly, then remediate them quickly and easily with Platformr.

Free Security Assessment — 11 Services Evaluated

AWS Security Hub Evaluated
Amazon GuardDuty Evaluated
S3 Storage Lens Evaluated
AWS Config Evaluated
AWS CloudTrail Evaluated
Amazon Macie Evaluated
Amazon Detective Evaluated
Amazon Inspector Evaluated
Security Groups Evaluated
AWS IAM Evaluated
AWS KMS Evaluated

What is the AWS Security Health Improvement Program?

The AWS Security Health Improvement Program (SHIP) is Amazon’s structured framework for helping customers start secure and stay secure on AWS. It uses data-driven insights to identify security service adoption gaps across key security use cases and delivers prescriptive guidance on best practices.

As an AWS partner, Platformr delivers SHIP assessments and goes a step further by automating remediation so your team doesn’t have to do it manually.

How a SHIP Engagement Works

1

Discovery — We align on your security priorities and evaluate your AWS environment across all 11 services

2

Assessment — You receive a clear, prioritized report of findings, gaps, and risks at no cost

3

Remediation — Use Platformr to quickly and easily close the gaps identified in your assessment

All AWS customers are eligible for a SHIP assessment, regardless of support tier. Platformr makes it free, fast, and actionable.

Everything evaluated. Nothing left unchecked.

Platformr’s free assessment covers all 11 AWS security services, giving you a complete picture of your security posture in one report.

AWS Security Hub

Risk Correlation and Compliance

Centralized view of security alerts and compliance status aggregated from across your entire AWS organization, scored against industry standards.

Amazon GuardDuty

Threat Detection

Intelligent threat detection using machine learning and threat intelligence to continuously monitor for malicious activity across your accounts and workloads.

S3 Storage Lens

Data Visibility and Access

Organization-wide visibility into S3 usage and activity, surfacing public access risks, encryption gaps, and misconfigured bucket policies.

AWS Config

Configuration Monitoring

Continuously assess, audit, and record AWS resource configurations to detect non-compliant changes and ensure ongoing adherence to security policies.

AWS CloudTrail

Audit Logging and Governance

Track user activity and API usage across your AWS infrastructure, creating a tamper-evident audit trail for security investigations and compliance.

Amazon Macie

Sensitive Data Discovery

Automatically discover and protect sensitive data stored in S3 using machine learning, detecting PII, credentials, and other sensitive content before it becomes a liability.

Amazon Detective

Security Investigation

Analyze, investigate, and rapidly identify the root cause of potential security issues using graph-based behavioral data collected from your AWS environment.

Amazon Inspector

Vulnerability Management

Automated vulnerability scanning for EC2 instances, Lambda functions, and container images, continuously surfacing software vulnerabilities and unintended network exposure.

Security Groups

Network Access Control

Review and validate VPC Security Group rules to identify overly permissive inbound and outbound access, unused rules, and network exposure risks across your infrastructure.

AWS IAM

Identity and Access Management

Evaluate IAM policies, roles, and permissions for least-privilege adherence, detecting overly broad access, unused credentials, and missing MFA enforcement across your organization.

AWS KMS

Key Management and Encryption

Assess encryption key policies, rotation configurations, and key usage patterns to ensure sensitive data is protected at rest and in transit with properly governed cryptographic controls.

Assess. Understand. Remediate.

Most security assessments end with a report. Platformr ends with results, because we don’t just show you the gaps, we help you close them.

Free

Security Assessment

We evaluate all 11 AWS security services against the SHIP framework at no cost. You get a clear, prioritized view of your security posture with no obligation to proceed.

11

Services Evaluated

Security Hub, GuardDuty, S3 Storage Lens, Config, CloudTrail, Macie, Detective, Inspector, Security Groups, IAM, and KMS — all covered in a single assessment.

Fast

Remediation

Once you see your risks, Platformr makes it quick and easy to remediate. Enable missing services, enforce policies, and close gaps without manual configuration work.