turbot/ibm_compliance

GitHub
Loading controls...

Benchmark: 2.1.1 Cloud Object Storage Encryption

Description

Objects stored in IBM Cloud Object Storage need to be encrypted at all times for client data security. By default all objects stored in IBM Cloud Object Storage are encrypted at-rest using provider-managed keys and no user action is needed. Optionally, you can also leverage IBM Cloud Object Storage integration with IBM Cloud Key Management Services to further add another layer of encryption to the Data Encryption Keys (DEKs) associated with the data (objects) stored in Cloud Object Storage buckets.

Usage

Browse dashboards and select 2.1.1 Cloud Object Storage Encryption:

steampipe dashboard

Or run the benchmarks in your terminal:

steampipe check ibm_compliance.benchmark.cis_v100_2_1_1

Snapshot and share results via Steampipe Cloud:

steampipe login
steampipe check --share ibm_compliance.benchmark.cis_v100_2_1_1

Controls

Tags