Automated Security Response on AWS is an add-on solution that works with AWS Security Hub to provide a ready-to-deploy architecture and a library of automated playbooks. The solution makes it easier for AWS Security Hub customers to resolve common security findings and to improve their security posture in AWS.
DynamoDB table created by AdminStack is non compliant with 2 security controls - DynamoDB.1 & DynamoDB.6 (AFSBP & SC)
To Reproduce
Deploy Admin stack as per implementation guide
Expected behavior
DynamoDB table that is deployed as part of solution conforms with standards it's checking against.
Please complete the following information about the solution:
[ ] Version: 2.1.1
To get the version of the solution, you can look at the description of the created CloudFormation stack. For example, "(SO0111) AWS Security Hub Automated Response & Remediation Administrator Stack, v1.4.0". You can also find the version from releases
[ ] Region: ap-southeast-2
[ ] Was the solution modified from the version published on this repository? No
[ ] If the answer to the previous question was yes, are the changes available on GitHub? n/a
[ ] Have you checked your service quotas for the sevices this solution uses? n/a
[ ] Were there any errors in the CloudWatch Logs? n/a
Describe the bug
DynamoDB table created by AdminStack is non compliant with 2 security controls - DynamoDB.1 & DynamoDB.6 (AFSBP & SC)
To Reproduce
Deploy Admin stack as per implementation guide
Expected behavior
DynamoDB table that is deployed as part of solution conforms with standards it's checking against.
Please complete the following information about the solution:
To get the version of the solution, you can look at the description of the created CloudFormation stack. For example, "(SO0111) AWS Security Hub Automated Response & Remediation Administrator Stack, v1.4.0". You can also find the version from releases
Screenshots n/a
Additional context n/a