Control: Azure HDInsight clusters should use encryption at host to encrypt data at rest
Description
Enabling encryption at host helps protect and safeguard your data to meet your organizational security and compliance commitments. When you enable encryption at host, data stored on the VM host is encrypted at rest and flows encrypted to the Storage service.
Usage
Run the control in your terminal:
powerpipe control run azure_compliance.control.hdinsight_cluster_encryption_at_host_enabled
Snapshot and share results via Turbot Pipes:
powerpipe loginpowerpipe control run azure_compliance.control.hdinsight_cluster_encryption_at_host_enabled --share
SQL
This control uses a named query:
hdinsight_cluster_encryption_at_host_enabled