Ensure compliance by enabling AWS Security Hub for an AWS Account according to Access Control benchmark.
Rule | AWS Security Hub should be enabled for an AWS Account |
Framework | NIST 800-171 Revision 2 |
Severity | ✔ High |
Rule Description:
This rule ensures that AWS Security Hub is enabled for an AWS Account and checks for compliance with the NIST 800-171 Revision 2 security controls. The NIST 800-171 Revision 2 provides guidelines for protecting sensitive information in non-federal systems and organizations.
Troubleshooting Steps:
If AWS Security Hub is not enabled or is not compliant with the NIST 800-171 Revision 2 controls, follow the troubleshooting steps below:
Verify AWS Security Hub Subscription:
Review Security Hub Check Status:
Review Security Hub Insights:
Necessary Codes:
No specific code is required for this rule.
Remediation Steps:
To enable AWS Security Hub and ensure compliance with the NIST 800-171 Revision 2 controls, follow the steps below:
Enable AWS Security Hub:
Review Security Hub Configuration:
Remediate Non-Compliant Controls:
Validate Compliance:
Additional Notes:
Enabling AWS Security Hub and ensuring compliance with NIST 800-171 Revision 2 controls helps organizations protect sensitive information and maintain a secure AWS environment. Regularly reviewing the Security Hub insights and status of control checks is essential to stay compliant with NIST guidelines and address any security risks promptly.