Evidence tier Source Confirmed · 3 captures on record
What the publisher says
As described on AWS Marketplace.
Tines is the intelligent workflow platform trusted by leading security and IT teams. Intelligent workflows combine automation, AI, and integration to unify data from across the environment and create a secure foundation for faster, more consistent work. They help teams eliminate silos, reduce manual effort, and move from alert to resolution with greater efficiency.
With Tines, teams can orchestrate workflows that connect AWS services to the rest of their ecosystem. Services like Security Hub, GuardDuty, EventBridge, and more can feed directly into Tines, where alerts are enriched with context from third-party tools (e.g. CrowdStrike, Elastic, Wiz, etc.), triaged automatically, and routed for review or approval. Remediation steps can then be executed across AWS and non-AWS systems without the need for custom development work or complex integrations.
Show the rest of the publisher’s description (22 more lines)
AWS customers commonly rely on Tines for:
- Endpoint detection and response alerts
- Phishing and abuse response
- Vulnerability and risk management
- Threat intelligence enrichment
- Fraud and compliance reporting
- Employee onboarding and offboarding
- Slack or Microsoft Teams bots
These are just some of the most popular use cases. Explore additional examples of how Tines and AWS work together here: https://www.tines.com/partners/aws/
With Tines and AWS, you can expect:
- Faster response: Signals from AWS flow directly into triage, enrichment, and remediation workflows without unnecessary manual steps.
- Unified operations: Security and IT teams can follow the same repeatable workflows across AWS and your full tech stack, reducing gaps and human handoffs.
- Increased AWS value: Make better use of all of your AWS solutions by connecting them to your broader tech stack with orchestrated, intelligent workflows.
- Less engineering burden: Teams operationalize AWS services without custom development work or integration maintenance.
What makes Tines different:
- Powerful and flexible: Orchestrate complex workflows across any system with an API. Tines customers connect an average of 68 tools and automate more than 20 workflows in their first year.
- Vendor agnostic: If it has an API, Tines can connect to it. Teams integrate data from AWS and the rest of their stack without being limited by rigid integrations.
- Fast time to value: Build workflows in hours with intuitive tooling and expert guidance.
- For the whole team: Security analysts, engineers, and IT professionals can all build in Tines using a visual interface that is clear, approachable, and deeply capable.
- Born in security: Governance, auditability, and deployment flexibility are built in, including SSO, role-based access control, and options for self-hosted, cloud, and hybrid environments.
Tines gives teams the control, visibility, and confidence they need to manage their most important workflows at scale while improving speed, reducing manual work, and strengthening security posture.
For custom pricing, EULA, or a private contract, contact AWS-Marketplace@tines.com. This includes inquiries about single-tenant environments, on-premises deployment, static IPs, and custom domains.
Highlights
Highlighted by the publisher on AWS Marketplace.
Powerful and flexible. Automate complex workflows across any system with an API. Tines is fully vendor agnostic, allowing teams to connect data from AWS and the rest of their stack without relying on predefined integrations. Customers connect an average of 68 tools and automate more than 20 workflows in their first year.
For the whole team. Allows frontline team members to build automation themselves, leveraging their expert knowledge of the workflow, and eliminating lengthy development cycles.
Enterprise-grade. All of the compliance you need, and all of the features you'd expect. From SSO to role-based access control.
Agent build and provenance
See the full provenance
The layer-by-layer build, the evidence behind each claim, the risk basis and the cross-marketplace links are open to any account. Some rows are disclosed, some the source leaves Unknown; a free account shows you which.
Compliance
- FedRAMPConfirmedNot listed90%, registry-checkedNo FedRAMP Marketplace entry matched this vendor's domain, checked 2026-08-27registry recordas observed 2026-08-27
Confirmed means matched to a public authoritative registry. Claimed means the vendor or its listing states it, not yet cross-checked. A framework not shown was not found in any source we hold, which is not evidence against it. Not listed means a scoped registry check found no match for this vendor's domain: a No is a scoped registry check, not a compliance judgment. Confidence bands: 95% domain-verified, 90% registry-checked, 80% self-attested, 70% weak signal. Self-attested items marked “vendor's site” are gathered from the vendor's own website and are not verified by us.
Vendor
External enrichment
Plans and pricing as listed
3 listed- Units
- Units
- Units
Refund terms
As stated by the publisher on AWS Marketplace.
All fees are non-cancellable and non-refundable except as required by law.
Sources
Publisher resources
4 linksLinked repositories
Unknown means this listing does not publish a repository. It is not a statement that the code is closed, and a linked repository is not a claim that the publisher wrote it: the registry computes that relationship privately and does not publish it.
Evidence risk is the share of the build you cannot see before you deploy, not a security rating. Sign in to see the layer-by-layer basis for this band.

