Control: AWS > CIS v3.0 > 2 - Storage > 2.01 - Simple Storage Service (S3) > 2.01.03 - Ensure all data in Amazon S3 has been discovered, classified and secured when required
Configures auditing against a CIS Benchmark item.
Level: 2
Amazon S3 buckets can contain sensitive data, that for security purposes should be discovered, monitored, classified and protected. Macie along with other 3rd party tools can automatically provide an inventory of Amazon S3 buckets.
Resource Types
This control targets the following resource types:
Policies
This control type relies on these other policies when running actions:
- AWS > CIS v3.0 > Maximum Attestation Duration
- AWS > CIS v3.0 > 2 - Storage > 2.01 - Simple Storage Service (S3) > 2.01.03 - Ensure all data in Amazon S3 has been discovered, classified and secured when required > Attestation
- AWS > CIS v3.0
- AWS > CIS v3.0 > 2 - Storage > 2.01 - Simple Storage Service (S3) > 2.01.03 - Ensure all data in Amazon S3 has been discovered, classified and secured when required
- AWS > CIS v3.0 > 2 - Storage
- AWS > CIS v3.0 > 2 - Storage > Maximum Attestation Duration
Category
In Your Workspace
Developers
- tmod:@turbot/aws-cisv3-0#/control/types/r020103
- tmod:@turbot/cis#/control/categories/v070501
- turbot graphql controls --filter "controlTypeId:tmod:@turbot/aws-cisv3-0#/control/types/r020103"
Get Controls
Control Type URI
Category URI
GraphQL
CLI