SEC07-BP03 Automate identification and classification
Automating the identification and classification of data can help you implement the correct
controls. Using automation for this instead of direct access from a person reduces the risk of
human error and exposure. You should evaluate using a tool, such as Amazon Macie
Level of risk exposed if this best practice is not established: Medium
Implementation guidance
-
Use Amazon Simple Storage Service (Amazon S3) Inventory: Amazon S3 inventory is one of the tools you can use to audit and report on the replication and encryption status of your objects.
-
Consider Amazon Macie: Amazon Macie uses machine learning to automatically discover and classify data stored in Amazon S3.
Resources
Related documents:
Related videos: