jonrau1 / ElectricEye

ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring supporting 100s of services and evaluations to harden your CSP & SaaS environments with controls mapped to over 20 industry, regulatory, and best practice controls frameworks
Apache License 2.0
933 stars 123 forks source link

[PFR] AWS AI Services #276

Closed jonrau1 closed 3 months ago

jonrau1 commented 3 months ago

Story

As the maintainer of ElectricEye, I want to add basic checks against AWS AI services (e.g., CodeCatalyst, Bedrock, Amazon Q Biz, etc.) so that users can have a way to audit and monitor usage and availability of AI services in their accounts.

Definition of Done

There are not a ton of security-specific settings to check, these will likely all be Informational checks just for the sake of being able to check for the existence of things like Bedrock FMs, Bedrock CMs, CodeCatalyst Workspaces, etc.

Nice to Have

Security shit, I guess?

Additional Information