Antivirus for AWS is a serverless, in-tenant solution that scans files stored in Amazon S3, Amazon EBS, Amazon EFS, and Amazon FSx for malicious code. It performs real-time, file-level detection and removal of infected data, supports automated deployment through AWS CloudFormation and AWS Fargate, and can be launched within 15 minutes with a private VPC endpoint. The service integrates with AWS native telemetry such as CloudTrail, Config, GuardDuty, Security Hub, and CloudWatch to provide activity monitoring, threat alerts, and configurable scanning schedules (real-time, on-demand, or scheduled) across multiple AWS accounts and regions, including GovCloud.
The platform also offers visibility into storage permissions and encryption status, generating downloadable compliance reports and supporting SOC 2, ISO 27001, and other regulatory frameworks. It leverages AWS services like IAM, Cognito, Lambda, and AppConfig for user and security settings management, and can be coordinated with AWS Transfer Family for secure data ingestion pipelines.