AWS Security Hub MCP App brings exposure findings into your AI-assisted workflow (Preview)

AWS Security Hub MCP App Preview
AWS has announced the preview of the AWS Security Hub MCP App, a local Model Context Protocol (MCP) server that integrates Security Hub exposure findings into Claude Desktop. This feature accelerates security investigations by minimizing context switching and manual triage, allowing users to explore and act on exposures without leaving their AI-assisted workflow.
With the Security Hub MCP App, users can:
- View top exposure findings
- Drill into a finding’s attack path and expanded network path
- Examine correlated findings and affected resource configurations
- Get remediation recommendations
Each tool call provides both a text summary for AI agents and an interactive visualization for verification. The MCP server operates locally using existing AWS credentials and is read-only, ensuring no changes to the environment.
This feature is available at no additional cost to Security Hub customers and is in preview in all AWS commercial Regions that support Security Hub.
What to do
- Explore the AWS Security Hub User Guide
- Visit the AWS Security Hub product page
- Check the AWS Regional Services List for supported Regions
Source: AWS release notes
If you need further guidance on AWS, our experts are available at AWS@westloop.io. You may also reach us by submitting the Contact Us form.


