This rule ensures that EBS snapshots are not publicly restorable for better security.
Rule | EBS snapshots should not be publicly restorable |
Framework | GxP 21 CFR Part 11 |
Severity | ✔ Medium |
Rule Description:
EBS (Elastic Block Store) snapshots should not be publicly restorable to ensure compliance with GxP (Good x Practice) regulations, specifically 21 CFR Part 11. This rule aims to protect sensitive data stored within EBS snapshots by preventing unauthorized access and maintaining the integrity of the data.
Troubleshooting Steps:
Necessary Codes:
No specific codes are required for this rule. However, you may need to use AWS CLI commands to validate and modify the EBS snapshot settings, if necessary.
Remediation Steps:
Note: Consult your organization's security policy and follow any additional steps or guidelines provided by your compliance team to ensure adherence to GxP 21 CFR Part 11 regulations.
Conclusion:
Following these steps will help ensure that EBS snapshots are not publicly restorable, meeting the compliance requirements of GxP 21 CFR Part 11. Regularly reviewing and modifying snapshot permissions will help maintain data security and integrity while keeping your organization compliant with regulatory standards.