aws-solutions / automated-security-response-on-aws

Automated Security Response on AWS is an add-on solution that works with AWS Security Hub to provide a ready-to-deploy architecture and a library of automated playbooks. The solution makes it easier for AWS Security Hub customers to resolve common security findings and to improve their security posture in AWS.
https://aws.amazon.com/solutions/implementations/aws-security-hub-automated-response-and-remediation/
Apache License 2.0
359 stars 102 forks source link

DynamoDB table created by AdminStack is non compliant #195

Open k4n30 opened 2 months ago

k4n30 commented 2 months ago

Describe the bug

DynamoDB table created by AdminStack is non compliant with 2 security controls - DynamoDB.1 & DynamoDB.6 (AFSBP & SC)

To Reproduce

Deploy Admin stack as per implementation guide

Expected behavior

DynamoDB table that is deployed as part of solution conforms with standards it's checking against.

Please complete the following information about the solution:

To get the version of the solution, you can look at the description of the created CloudFormation stack. For example, "(SO0111) AWS Security Hub Automated Response & Remediation Administrator Stack, v1.4.0". You can also find the version from releases

Screenshots n/a

Additional context n/a

AaronSchuetter commented 2 months ago

We will add this to our backlog for the next release, thank you.