The Cloud Playbook

The Cloud Playbook

TCP #84: How to Automatically Export Inspector SBOMs to S3 Using Lambda?

And Never Miss a Vulnerability Again

Amrut Patil's avatar
Amrut Patil
Jul 30, 2025
∙ Paid

Amazon Inspector can now generate Software Bill of Materials (SBOMs) for your workloads.

That’s great. But what do most teams do with them?

They leave them sitting in the console. Or worse, someone manually downloads the files before every audit.

That’s a problem.

You need SBOMs stored in a central location.

You need them versioned, encrypted, and searchable.

And you need them exported automatically, the moment they’re created.

The solution?

A simple Lambda function triggered by EventBridge that copies every SBOM file to an S3 bucket, forever.

Let’s break down how to build it, step by step, in today’s newsletter.

User's avatar

Continue reading this post for free, courtesy of Amrut Patil.

Or purchase a paid subscription.
© 2026 Amrut Patil · Privacy ∙ Terms ∙ Collection notice
Start your SubstackGet the app
Substack is the home for great culture