> Source: [sk183447](https://support.checkpoint.com/results/sk/sk183447)

# sk183447 - How to configure AWS integration with ASM on ERM

| Property | Value |
|----------|-------|
| Solution ID | sk183447 |
| Date Created | 2025-05-11 |
| Last Modified | 2025-05-11 |
| Technical Level | General |
| Products | External Risk Management |
| Versions | Cloud |

## Solution

AWS Integration into 'My Digital Presence' allows ERM to enhance the discovery and monitoring of cloud assets within AWS environments. This integration is crucial as it provides comprehensive visibility into cloud assets, helping to uncover shadow IT and potential security blind spots, especially in dynamic organizations undergoing constant changes.  

**Integration advantages**

Enhanced Discovery: Integrating AWS cloud assets enables more accurate and complete discovery of cloud resources.  

Improved Security: Continuous monitoring of cloud assets helps in identifying and mitigating security risks.  

Operational Efficiency: Automates the discovery process, reducing manual efforts and improving response times.  

**common use case**   

A company undergoing frequent mergers and acquisitions can use AWS integration to identify and secure cloud assets that may not be documented or known to the security team, thereby reducing the risk of data breaches and ensuring compliance.  

**In order to proceed with this integration please follow the steps below:
Access CloudFormation Template**

* Navigate to the below designated cloudformation template link   

  https://us-east-1.console.aws.amazon.com/cloudformation/home?region=us-east-1#/stacks/quickcreate?templateURL=https://s3-eu-west-1.amazonaws.com/cyberint-audit-public/security-audit-role.yaml\&stackName=CyberintAudit

<!-- -->

* While you are logged in to your AWS account, you should apply the template in this URL. You will receive this page:  

![](https://sc1.checkpoint.com/sc/SolutionsStatics/NEW_SK_NOID1746791360687/image001 (8)202505091356491.png)  

**Fill in Required Fields**   

**Customer?** Internal Tenant ID (visible in account setting screen)  

**ExternalId ?** Internal Tenant ID (visible in account setting screen) - No spaces allowed (In case there are spaces, please add the customer ID without spaces)  

*
  * in case of multiple accounts for the same customer there is a need to give different ExternalId ("customer_name", "customer_name1", etc...)

<!-- -->

* Click "Create stack"
* This transaction will be shown with "Logical ID" CyberintAudit and in status "CREATE_IN_PROGRESS":

<br />

![](https://sc1.checkpoint.com/sc/SolutionsStatics/NEW_SK_NOID1746791360687/image003 (1)202505091359432.png)  

**Grant Permissions**   

* Wait for a few minutes for this process to finish and click the refresh icon (top right on your screen).
* Once the permission is granted status will be change to: "CREATE_COMPLETE

<br />

![](https://sc1.checkpoint.com/sc/SolutionsStatics/NEW_SK_NOID1746791360687/image004202505091401013.png)  

* Go to the link "CallbackURL" in the "Outputs" page - this grants ERM a set of permissions that are called "Security Auditor" (a managed AWS policy):

<br />

![](https://sc1.checkpoint.com/sc/SolutionsStatics/NEW_SK_NOID1746791360687/image008202505091402144.png)  

Verify Integration  

* "Success" indication means that ERM now has all required permissions for cloud integration. If the browser does not show "Success" - contact ERM support team.

<br />

![](https://sc1.checkpoint.com/sc/SolutionsStatics/NEW_SK_NOID1746791360687/image009202505091404005.png)  

* Update ERM team that the user has granted ERM access to his account. ERM will configure the account in the discovery process.
* You're all set. Now ERM can discover all assets within the account and detect more issues on them.

<br />

NOTE: Make sure to configure the account as an ASM cloud account asset  

![](https://sc1.checkpoint.com/sc/SolutionsStatics/NEW_SK_NOID1746791360687/image015 (1)202505091405456.png)  

**Benefits**   

Comprehensive Monitoring: Full ongoing discovery and monitoring of all cloud asset exposures, including S3 buckets, IPs, domains, and subdomains.  

Enhanced Security Posture: Identifies and mitigates risks associated with cloud assets that may not be discoverable through other means.  

If you encounter any error, please do not hesitate to contact ERM support for further assistance.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
