department-of-veterans-affairs / va.gov-team

Public resources for building on and in support of VA.gov. Visit complete Knowledge Hub:
https://depo-platform-documentation.scrollhelp.site/index.html
281 stars 197 forks source link

[Security - Controls Effort] Create new AWS group for SBOM access #82861

Closed hgbarreto closed 1 month ago

hgbarreto commented 4 months ago

Description

Security team would like access to Athena and possibly AWS Glue in order to run crawlers manually. They should be able to see default Queries and create new ones on the SBOM table. NOTE - This story may rely on IaC for Athena, Glue and S3 bucket to be complete.

Resources

Acceptance Criteria

Refinement Guidance - Check the following before working on this issue:

adhoc-nshipman commented 1 month ago

Currently, we are blocked waiting for Ken Mayo to gain AWS access before we can test permissions. Here is the PR in case I am unable to take this over: https://github.com/department-of-veterans-affairs/devops/pull/14575