turbot/aws_compliance

Control: GuardDuty Detector should be centrally configured

Description

Ensure that GuardDuty is centrally configured, if GuardDuty is not under central management, it becomes impossible to centrally manage GuardDuty findings, settings, and member accounts.

Usage

Run the control in your terminal:

powerpipe control run aws_compliance.control.guardduty_centrally_configured

Snapshot and share results via Turbot Pipes:

powerpipe login
powerpipe control run aws_compliance.control.guardduty_centrally_configured --share

SQL

This control uses a named query:

guardduty_centrally_configured

Tags