Skip to technology filters Skip to main content
Dynatrace Hub

Extend the platform,
empower your team.

Popular searches:
Home hero bg
Amazon ECRAmazon ECR
Amazon ECR

Amazon ECR

Ingest Amazon Elastic Container Registry vulnerability findings and scan events.

App
Free trialDocumentation
Sample dashboard with a summary of vulnerability findings across various accounts and regions.Sample dashboard with details of top vulnerabilities and vulnerable packages.Sample dashboard for the security coverage use case.Sample workflow for an automated Jira ticket creation for critical vulnerability findings.Sample workflow for automated Slack notifications for critical vulnerability findings.
  • Product information
  • Release notes

Overview

Dynatrace integrates with Amazon ECR to enable visibility, orchestration, and prioritization of cross-container registry vulnerability findings.

  • Single pane of glass: Ingest vulnerability findings from Amazon ECR into Dynatrace (powered by OpenPipelineâ„¢).

  • Unified analysis: Dynatrace transforms and maps the findings to a unified format for vulnerability findings (powered by Dynatrace Semantic Dictionary).

  • Findings operationalization: Prioritize, visualize, and automate vulnerability findings with runtime context.

  • Unveil blind spots: Discover and eliminate coverage gaps in your Software Development Lifecycle (SDLC).

Use cases

  • Overview: Visualize and report your current security posture and trends around vulnerability findings across container registries with Dashboards.

  • Prioritization: Analyze and prioritize vulnerability findings across multiple tools and products uniformly with Notebooks.

  • Automation: Automate the orchestration of the critical vulnerability findings by creating notifications and tickets using Workflows.

  • Investigation: Use vulnerability findings as an additional dimension for threat hunting and incident forensics using Security Investigator.

Get started

You can ingest Amazon ECR vulnerability findings and scan events (basic or enhanced scanning) into Dynatrace via AWS EventBridge using the CloudFormation template provided by Dynatrace. For instructions, go to Ingest Amazon ECR vulnerability findings and scan events.

Details

This integration app delivers several sample dashboards and workflows to help you

  • Visualize container vulnerability findings (dashboard)
  • Discover container scanning gaps (dashboard)
  • Automatically create Slack notifications for critical findings (workflow)
  • Automatically create Jira tickets for critical findings (workflow)

Compatibility information

  • Amazon ECR (basic scanning) EventBridge events format - completed image scan events and the corresponding security findings.
  • Amazon ECR (enhanced scanning) EventBridge events format - individual findings and scan events reported by AWS Inspector.
Dynatrace
DocumentationMore Information
By Dynatrace
Dynatrace support center
Subscribe to new releases
Copy to clipboard

Related to Amazon ECR

Dashboards logo

Dashboards

Transform complex data into clear visualizations with custom dashboards.

OpenPipeline logo

OpenPipeline

Configure ingest, processing, and persistence of data sent to Grail.

Workflows logo

Workflows

Automate tasks in your IT landscape and move towards autonomous operations.

Full version history

ReleaseDate

Full version history

2.2.6

Patch Changes

  • Security Updates

Full version history

2.2.3

Patch Changes

  • Updated dependencies

2.2.2

Patch Changes

  • Update connection filter's label

2.2.1

Patch Changes

  • Connection filter now only filters for the connection's name

2.2.0

Minor Changes

  • Updated footer to provide an option for giving feedback

Full version history

2.2.2

Patch Changes

  • Update connection filter's label

2.2.1

Patch Changes

  • Connection filter now only filters for the connection's name

2.2.0

Minor Changes

  • Updated footer to provide an option for giving feedback

Full version history

2.2.0

Minor Changes

  • Updated footer to provide an option for giving feedback

Full version history

2.1.0

Minor Changes

  • Modified CloudFormation template to include the ID of the scan event in Vulnerability Finding events. This is essential to connect Vulnerability Finding and Vulnerability Scan events detected by ECR basic scan
  • Modified CloudFormation template to generate scan ID for ECR Enhanced Vulnerability Finding events

Patch Changes

  • Update dependencies
  • Update Dashboards

Full version history

2.0.0

Major Changes

  • Migrate app to fetching from new security.events table

Patch Changes

  • Remove "type" query parameter in url

Full version history

1.1.3

Patch Changes

  • Fix CF delete-stack command
  • Update dependency
  • UI improvements

1.1.1

Patch Changes

  • Updated the Slack workflow to use version 3.0.0 at least

1.1.0

Minor Changes

  • Migrate app to headless

Patch Changes

  • Update dynatrace AWS event forwarder templates
  • Updated Container Vulnerability Findings Overview dashboard, all widgets use the filters.
  • Update workflows
  • Fixed a bug, where after invalidating a token the 'Invalidate token'-button wouldn't be enabled for any other connection.
  • Adjust texts in UI components

Full version history

1.1.1

Patch Changes

  • Updated the Slack workflow dependency, now it requires Slack app with version >3.0.0

1.1.0

Minor Changes

  • Migrate app to headless

Patch Changes

  • Update dynatrace AWS event forwarder templates
  • Updated Container Vulnerability Findings Overview dashboard, all widgets use the filters.
  • Update workflows
  • Fixed a bug, where after invalidating a token the 'Invalidate token'-button wouldn't be enabled for any other connection.
  • Adjust texts in UI components

Full version history

1.1.0

Minor Changes

  • Connection configuration and monitoring are now part of the Settings.
  • Small updates to the ready-made documents.

Full version history

1.0.5

Patch Changes

  • Removing provider_product parameter from OpenPipeline Endpoint URL
  • Improved accuracy of the last event received value in the connection table

1.0.4

Patch Changes

  • Fix compatibility issues

1.0.3

Patch Changes

  • Adjust texts

1.0.2

Patch Changes

  • Updated sample dashboards, fixed filtering for Tag variable
  • Adjust CloudFormation template for multi-region deployment
  • Fix Platform URL for OpenPipeline endpoint

1.0.1

Patch Changes

  • Create unique secret-name for AWS CLI command
  • Improve texts
  • Adjust width of tooltip for Dynatrace OpenPipeline endpoint

1.0.0 - Initial Release

  • Step-by-step user onboarding with CLI commands and CloudFormation template for download.
  • Ready-made documents with sample dashboards and workflows.

Full version history

1.0.4

Patch Changes

  • Fix compatibility issues

1.0.3

Patch Changes

  • Adjust texts

1.0.2

Patch Changes

  • Updated sample dashboards, fixed filtering for Tag variable
  • Adjust CloudFormation template for multi-region deployment
  • Fix Platform URL for OpenPipeline endpoint

1.0.1

Patch Changes

  • Create unique secret-name for AWS CLI command
  • Improve texts
  • Adjust width of tooltip for Dynatrace OpenPipeline endpoint

1.0.0 - Initial Release

  • Step-by-step user onboarding with CLI commands and CloudFormation template for download.
  • Ready-made documents with sample dashboards and workflows.

Full version history

1.0.3

Patch Changes

  • Adjust texts
  • Fix compatibility issue

1.0.2

Patch Changes

  • Updated sample dashboards, fixed filtering for Tag variable
  • Adjust CloudFormation template for multi-region deployment
  • Fix Platform URL for OpenPipeline endpoint

1.0.1

Patch Changes

  • Create unique secret-name for AWS CLI command
  • Improve texts
  • Adjust width of tooltip for Dynatrace OpenPipeline endpoint

1.0.0 - Initial Release

  • Step-by-step user onboarding with CLI commands and CloudFormation template for download.
  • Ready-made documents with sample dashboards and workflows.

Full version history

1.0.2

Patch Changes

  • Updated sample dashboards, fixed filtering for Tag variable
  • Adjust CloudFormation template for multi-region deployment
  • Fix Platform URL for OpenPipeline endpoint

1.0.1

Patch Changes

  • Create unique secret-name for AWS CLI command
  • Improve texts
  • Adjust width of tooltip for Dynatrace OpenPipeline endpoint

1.0.0 - Initial Release

  • Step-by-step user onboarding with CLI commands and CloudFormation template for download.
  • Ready-made documents with sample dashboards and workflows.

Full version history

1.0.0 - Initial Release

  • Step-by-step user onboarding with CLI commands and CloudFormation template for download.
  • Ready-made documents with sample dashboards and workflows.
Dynatrace Hub
Hub HomeGet data into DynatraceBuild your own app
Dynatrace Intelligence - Agentic Operations SystemThe Dynatrace Agentic AI ecosystem
All (914)Log Management and AnalyticsKubernetesAI and LLM ObservabilityInfrastructure ObservabilitySoftware DeliveryApplication ObservabilityBusiness ObservabilityDigital Experience
Filter
Type
Built and maintained by
Deployment model
SaaS
  • SaaS
  • Managed
Partner FinderBecome a partnerDynatrace Developer

Application Security

Scale your DevSecOps with our unique approach to securing clould-native applications at runtime combined with intelligent automation.

Get started with these essentials

Vulnerabilities logo

Vulnerabilities

Detect and prioritize vulnerabilities to improve your environment's security.

Security Posture Management logo

Security Posture Management

Detect, prioritize, and remediate security and compliance findings with SPM.

Threats & Exploits logo

Threats & Exploits

Understand, triage, and investigate detection findings and alerts.

Investigations logo

Investigations

Fast and precise incident response on Grail data with DQL queries.

Real-time vulnerability detection at runtime

Get continuous monitoring of third-party, code-level & runtime vulnerabilities.

Vulnerabilities logo

Vulnerabilities

Detect and prioritize vulnerabilities to improve your environment's security.

Continuous Security Posture Management

Simplify compliance monitoring with pre-built policies for CIS, DORA, DISA STIG, and more, saving time and reducing complexity.

Security Posture Management logo

Security Posture Management

Detect, prioritize, and remediate security and compliance findings with SPM.

Protect your environment right when attacks happen

Detect and block the most severe attacks without affecting critical processes.

Threats & Exploits logo

Threats & Exploits

Understand, triage, and investigate detection findings and alerts.

Detect, investigate and respond to threats

Investigate and respond to cloud security incidents with powerful analysis tools

Investigations logo

Investigations

Fast and precise incident response on Grail data with DQL queries.

Threat intelligence ingest & enrichment

Ingest threat reports and enrich observables with threat intelligence integrations.

Security Enrichment logo

Security Enrichment

Connect any HTTP-based threat intelligence source to enrich observables.

AbuseIPDB logo

AbuseIPDB

Enrich observables with threat intelligence from AbuseIPDB.

VirusTotal logo

VirusTotal

Enrich observables with threat intelligence from VirusTotal.

CrowdStrike logo

CrowdStrike

Ingest CrowdStrike detection findings, threat reports, and audit logs.

LevelBlue (AlienVault) OTX logo

LevelBlue (AlienVault) OTX

Ingest LevelBlue (AlienVault) OTX threat reports.

Security findings ingest

Ingest detection, vulnerability, and compliance findings, as well as security scan events, and audit logs from DevSecOps product integrations.

See more (17)
OCSF logo

OCSF

Ingest security findings in Open Cybersecurity Schema Framework (OCSF) format.

Amazon ECR logo

Amazon ECR

Ingest Amazon Elastic Container Registry vulnerability findings and scan events.

Google Artifact Registry logo

Google Artifact Registry

Ingest Google Artifact Registry vulnerability findings.

AWS Security Hub logo

AWS Security Hub

Ingest AWS Security Hub vulnerabilities, detections, and compliance findings.

Microsoft Defender for Cloud logo

Microsoft Defender for Cloud

Ingest Microsoft Defender for Cloud security findings and scan events.

Tenable logo

Tenable

Ingest Tenable vulnerability findings, scan events, and audit logs.

Security logs ingest

Ingest logs from security-related products.

See more (2)
Akamai logo

Akamai

Ingest logs and security events from Akamai products.

CyberArk logo

CyberArk

Ingest CyberArk audit logs via SIEM integration for reporting and analysis.

Okta logo

Okta

Ingest Okta audit logs via the System logs API.

AWS Web Application Firewall (WAF) logo

AWS Web Application Firewall (WAF)

Web application firewall that lets you monitor the HTTP(S) requests.

Azure logs logo

Azure logs

Get insights from Azure logs with Log Management and Analytics.

Amazon API Gateway logo

Amazon API Gateway

Service for developers to create, publish, maintain, monitor, and secure APIs.

More resources

GitHub Copilot Coding Agent logo

GitHub Copilot Coding Agent

Automate vulnerability remediation and boost developer productivity.

GitHub Copilot Custom Agent logo

GitHub Copilot Custom Agent

Automate your development workflows with specialized agent definitions.

Are you looking for something different?

We have hundreds of apps, extensions, and other technologies to customize your environment

Extend your knowledge

Learn the Dynatrace Query Language

Learn the Dynatrace Query Language

Explore data, discover patterns, anomalies and outliers, and create statistical modeling with DQL, our powerful query language.
Learn DQL
Solve security issues with custom apps

Solve security issues with custom apps

Dynatrace Developer makes it easy to create custom apps for your organization. Start with one of our templates or use your own code.
Build apps
Skill up with on-demand courses

Skill up with on-demand courses

Go to Dynatrace University for focused courses and learning paths -- from platform basics to key certifications.
Build skills