AWS Compliance
Inherit the most comprehensive compliance controls with AWS. AWS supports 143 security standards and compliance certifications, including PCI-DSS, HIPAA/HITECH, FedRAMP, GDPR, FIPS 140-2, and NIST 800-171, helping customers satisfy compliance requirements around the globe.
Recent questions
see all1 / 18
- We’re operating in a regulated environment where we’re only allowed to run workloads in a specific region. We’ve discovered a few situations where resources were accidentally created in other regions,...
- Hi all, I want to do an ISO27001 (Annex A) assessment of the aws services running within an account to check their compliance against this standard. I guess enabling aws config and aws security hub w...
- We are running a multi-region architecture where our application in the US East (N. Virginia) Region processes data stored in an S3 bucket located in the EU (Frankfurt) Region. This has resulted in si...
- Amazon S3 itself is HIPAA eligible but wondering if anyone knows if S3 Tables is HIPAA eligible or need to expand the HIPAA eligibility similar to S3 Transfer Acceleration/Glacier.
- Hi all, I have a requirement to generate alerts whenever a change is made in our AWS environment. For example, starting small, we would like to know when anyone makes a change to EC2 resources (a new ...
- Folks, It's been long time since Amazon Q Business Pro service not available in au southeast 2 region and request your thought on any approximate timeline for it's availability. The requirement here ...
- Hello. I'm trying to figure out what the FIPS compliant endpoint for the Domain Endpoint is. This is the Domain Endpoint, not the AWS API Endpoint. [The documentation](https://docs.aws.amazon.com/gene...
- Hi everyone, I'm currently working on the PCI DSS certification and I'm facing a challenge. While I've found the PCI DSS v3.2.1 standard in Security Hub, my auditors are requiring compliance with the...
- I’m seeking clarification on AWS’s policies regarding the use of Amazon IVS (Interactive Video Service) for live streaming adult content. I’ve reviewed the Service Terms, Acceptable Use Policy, and co...
- Hello, I recently discovered that the eks-cluster-logging-enabled managed config rule is not available in us-gov-east-1. The documentation notes that it's supported in all regions though. [https://doc...
- Hi AWS, we have a list of security controls as mentioned below. We are preferring the use of AWS Trusted Advisor and the Remediator to remediate them, but I am not sure if the Trusted Advisor will rem...
- Hi AWS, we have recently deployed AWS Config Conformance packs to detect non-compliant resources and remediation was done manually. It has improved the performace score to a certain extent but now the...
- Hi AWS, while disabling the unapproved regions in our AWS accounts we noticed that a couple of regions are enabled by default. After research I figured out **Regions introduced before March 20, 2019 a...
- Hi AWS, we are planning to delete all the AWS resources created outside of the four approved AWS regions i.e. us-east-1, us-east-2, us-west-1 and us-west-2. The AWS services/resources are CloudWatch, ...
- Hi AWS, we have deployed an SCP and it is restricting us to create any AWS resources outside of approved four AWS regions i.e. `us-east-1`, `us-east-2`, `us-west-1` and `us-west-2`. But one of the...
- is the sync analyzedocuemnt api from** python SDK **encrypted by TLS by default? this will be enough for HIPAA compliance as far as encryption in transmit is concerned? if not whats the best/easiest ...
- Hello Everyone - I ran into this situation where I advised someone not to use Default VPC for Prod purposes, but they went ahead and created resources on the Default VPC anyway. Now, all of the secur...
- Greetings for the day! Whatever AWS account I'm creating, all the accounts are suspended and within one day it's auto closed by AWS. I get the link to upload the original documents, I have uploaded al...
Recent articles
see all1 / 5
- NaveenEXPERTpublished 2 days ago0 votes72 viewsManaging database compliance across multiple AWS accounts is time-consuming and error-prone. This article shows you how to use AWS Config Organization Conformance Packs to automate compliance monitori...
- AWS OFFICIALUpdated 2 months ago1 votes721 viewsThis article explains how to use Simulated Conditions Response and Management (SCRaM) to enhance your incident response readiness. The article includes best practices and proactive activities that you...
- AWS OFFICIALUpdated 9 months ago0 votes192 viewsThis report is published pursuant to Article 7 of the European Union (EU) Terrorist Content Online Regulation (Regulation EU 2021/784).
- AWS OFFICIALUpdated 9 months ago0 votes890 viewsThis report is published pursuant to Article 15 of the European Union (EU) Digital Services Act (Regulation EU 2022/2065).
- BenLEXPERTpublished 2 years ago0 votes5K viewsThe Digital Millennium Copyright Act (DMCA) establishes procedures for addressing alleged copyright infringement online. While the DMCA notification system aims to balance the interests of copyright h...
1 / 18
Giovanni Lauria
EXPERTOsvaldo Marte
EXPERTAdeleke Adebowale .J.
EXPERTThanniru Anil Kumar
EXPERTNARRAVULA MUNI SAI TEJA
EXPERTGunasekaran, Makendran
EXPERTMina Gobrial
EXPERTHeverin, Stephen
EXPERTSrikanth_N
SUPPORT ENGINEER
