turbot/aws_compliance

Control: Ensure all data in AWS S3 has been discovered, classified and secured when required

Description

AWS S3 buckets can contain sensitive data, that for security purposes should be discovered, monitored, classified and protected. Macie along with other 3rd party tools can automatically provide an inventory of AWS S3 buckets.

Usage

Run the control in your terminal:

powerpipe control run aws_compliance.control.s3_bucket_protected_by_macie

Snapshot and share results via Turbot Pipes:

powerpipe login
powerpipe control run aws_compliance.control.s3_bucket_protected_by_macie --share

SQL

This control uses a named query:

s3_bucket_protected_by_macie

Tags