Security Hub was just released recently by AWS. Right now it's rigid and un-customizable, but it has integrations to get additional functionality with several security tools. I think it would be extremely helpful to have something so customizable as Chef Inspec be integrated in to this. This could serve several purposes. 1) Customized Profile ability to scan at the account level in AWS accounts 2) The ability to roll up compliance into a single view from multiple accounts 3) Built in to AWS functionality that is easier to integrate 4) Easier adoption of Chef Compliance as a result
I think there are many more benefits, but using this makes it so you do not have to maintain IAM users and keys like you do with the current plugin system for using Chef Compliance on the AWS account layer. I think having both options available would be really powerful and honestly I do not think it would be hard to do.