Urgent.News

What's breaking now, across thousands of outlets.

AI

Automate remediation post AWS DevOps Agent investigation

AWS DevOps Agent can diagnose production incidents but is kept in observe-and-report mode so it does not change resources directly. This post shows how to use AWS Lambda Durable Functions, Amazon EventBridge, and Amazon Bedrock to turn its investigation summaries into pre-validated fixes an on-call engineer can approve with a single action.

Organizations running production workloads on AWS prioritize reducing the time between incident detection, investigation, and remediation. AWS DevOps Agent, an AI-powered agent that autonomously triages incidents using correlated metrics, logs, and application topology, addresses this priority by providing root cause analysis and recommended actions.

However, organizations typically keep these agents in observe-and-report mode, where the agent diagnoses issues but doesn't modify production resources directly, to retain control and prevent unintended changes. This post demonstrates how to use AWS Lambda Durable Functions, Amazon EventBridge, and Amazon Bedrock to create an automated remediation workflow that completes the issue resolution step, complementing AWS DevOps Agent.

The workflow transforms investigation summaries into pre-validated fixes ready for single approval action, reducing mean time to resolution and freeing on-call engineers from repetitive diagnostic work. The solution architecture consists of steps where AWS DevOps Agent emits an event containing investigation findings, Amazon EventBridge triggers a Lambda function with this information, and the Lambda function packages the summary to invoke a durable function.

The durable function sends the context to Amazon Bedrock, which analyzes the findings and lists applicable remediation tools from an approved allowlist. The durable function then runs the remediation tools autonomously for read-only actions or waits for human approval before applying infrastructure changes. By checkpointing progress and suspending execution until approval, the system ensures safe and auditable automated actions while minimizing the time between detection and remediation.

Written by urgent.news from AWS Machine Learning's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.

Read the original at aws.amazon.com →

More in AI

AI Needs Access to Data. That Doesn't Mean It Needs to See It | Opinion

AI can improve financial services, but organizations need stronger access controls and privacy safeguards for sensitive data.

  • AI systems need data for operation, but unrestricted data visibility isn't required.
  • Organizations must enforce technical privacy measures beyond written policies.
  • Encryption in use enables computation on encrypted data without exposing records.

More from Wednesday 7 October →