Loading controls...
Benchmark: 8. Take action on findings
Description
AWS Security Hub, Amazon GuardDuty, and AWS Identity and Access Management Access Analyzer are managed AWS services that provide you with actionable findings in your AWS accounts. They are easy to turn on and can integrate across multiple accounts. Turning them on is the first step. You also need to take action when you see findings.
Usage
Browse dashboards and select 8. Take action on findings:
steampipe dashboard
Or run the benchmarks in your terminal:
steampipe check aws_top_10.benchmark.account_security_take_action_on_findings
Snapshot and share results via Steampipe Cloud:
steampipe loginsteampipe check --share aws_top_10.benchmark.account_security_take_action_on_findings
Controls
- GuardDuty should be enabled
- GuardDuty Detector should not have high severity findings
- IAM Access analyzer should be enabled without findings
- AWS Security Hub should be enabled for an AWS Account