# Amazon Security Lake

**Canonical:** https://apis.io/providers/amazon-security-lake/  
**Website:** https://aws.amazon.com/security-lake/  
**APIs profiled:** 3

Amazon Security Lake is a service that automatically centralizes an organization's security data from cloud, on-premises, and custom sources into a purpose-built data lake stored in your own Amazon S3. It manages the data lifecycle to help you optimize storage and supports OCSF (Open Cybersecurity Schema Framework) for normalized security data analysis.

## Kin Score — 50.5 / 100 (developing)

Scored 2026-08-20 under rubric 0.12.0. Trend: flat (+0.0 from 50.5).

| Facet | Score |
|---|---|
| Discoverability | 72.2 |
| Contract Quality | 31.1 |
| Governance | 25.0 |
| Contract Governance | 25.0 |
| Operational Transparency | 26.3 |
| Developer Ergonomics | 69.0 |
| Commercial Clarity | 76.3 |
| Access Clarity | 76.3 |

## Agent readiness — 35.0 (agent-ready)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | derived |
| Reversibility Documented | no |
| MCP Server | no |
| Auth Clarity | yes |
| Idempotency | no |
| Error Semantics | no |
| OpenAPI Examples | verified |
| Rate Limit Signal | documented |
| Event Surface Described | no |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |

## Access

Freemium · Self-serve signup — onboarding: self-serve, pricing: freemium, trial: no (confidence: high).

## APIs (3)

- **Amazon Security Lake Data Lakes API** — Data lake creation and management
- **Amazon Security Lake Log Sources API** — AWS and custom log source management
- **Amazon Security Lake Subscribers API** — Subscriber management for data access

## Agentic access (1)

- **Amazon Security Lake Agentic Access** — 13 operations · 9 acting

## Security (4)

- **Amazon Security Lake Authentication** — apiKey · 1 scheme
- **Amazon Security Lake Domain Security** — TLSv1.3 · HSTS · DMARC
- **Amazon Security Lake Vulnerability Disclosure** — security.txt · contact published
- **Amazon Security Lake Trust Center** — PCI DSS, HIPAA, FedRAMP, GDPR, FIPS 140

## Plans (1)

- **Amazon Security Lake Plans Pricing**

## Use cases (6)

- **Security Data Centralization** — Aggregate all security data from across a multi-account AWS environment into one queryable data lake.
- **SIEM Integration** — Provide SIEM platforms like Splunk, Sumo Logic, and Microsoft Sentinel direct access to normalized security data.
- **Threat Hunting** — Enable security analysts to query normalized OCSF data for threat hunting and forensic investigation.
- **Compliance Data Retention** — Retain security logs in a cost-optimized data lake for compliance audit requirements.
- **Security Analytics** — Run advanced analytics and ML models against normalized security data for anomaly detection.
- **Multi-Cloud Security Data** — Centralize security data from on-premises and other cloud providers alongside AWS security data.

## Tags

Data Lake, Security, SIEM, Threat Detection

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/amazon-security-lake/). Scores are computed from the provider's own public artifacts under a published rubric.
