Automated OS & Application Patching
Patch Manager automates the process of patching managed instances with security updates and other types of updates.
AWS-managed baselines for each OS
Define your own approval rules
Filter by severity, classification, product
Remember: Patch Manager uses Patch Baselines to define which patches to install. Maintenance Windows control when patches are applied. Use Patch Groups (via tags) to apply different baselines to different instance groups. Compliance reporting is built-in.