ScaleSec / terraform_aws_scp
AWS Organizations Service Control Policies (SCPs) written in HashiCorp Terraform.
☆237Updated 4 months ago
Alternatives and similar repositories for terraform_aws_scp:
Users that are interested in terraform_aws_scp are comparing it to the libraries listed below
- Automatically compile an AWS Service Control Policy that ONLY allows AWS services that are compliant with your preferred compliance frame…☆225Updated last year
- AWS Inventory and Compliance Framework☆224Updated last year
- Example policies demonstrating how to implement a data perimeter on AWS.☆145Updated this week
- AWS Config resource schema define the properties and types of AWS Config resource configuration items (CIs). Resource CI schema are used …☆242Updated 8 months ago
- Example AWS Service control policies to get started or mature your usage of AWS SCPs.☆232Updated this week
- Cloud Custodian policy that logs unused security groups☆142Updated 3 years ago
- SCP management tool☆130Updated last year
- AWS Security Analytics Bootstrap enables customers to perform security investigations on AWS service logs by providing an Amazon Athena a…☆246Updated this week
- Access Undenied parses AWS AccessDenied CloudTrail events, explains the reasons for them, and offers actionable remediation steps. Open-s…☆261Updated 2 years ago
- ☆135Updated last month
- ☆281Updated 2 years ago
- AWS IAM Permissions Guardrails https://aws-samples.github.io/aws-iam-permissions-guardrails/☆124Updated last year
- Assisted Log Enabler for AWS - Find AWS resources that are not logging, and turn them on.☆245Updated this week
- Collection of semi-useful Service Control Policies and scripts to manage them☆93Updated 2 weeks ago
- Scripts to quickly fix security and compliance issues☆105Updated last year
- Code examples for the AWS Security Blog post: How to use CI/CD to deploy and configure AWS security services with Terraform☆96Updated 3 years ago
- This repository can be used to generate and evaluate findings detected by Amazon GuardDuty☆378Updated 2 weeks ago
- Resource types that can be publicly exposed on AWS☆321Updated 2 years ago
- Automated Security Response on AWS is an add-on solution that works with AWS Security Hub to provide a ready-to-deploy architecture and a…☆412Updated 3 weeks ago
- ☆145Updated 2 months ago
- Enables AWS Config and adds managed config rules with good defaults.☆230Updated last month
- ☆154Updated last year
- Get notified when actions are taken in the AWS Console.☆274Updated 3 weeks ago
- Crowdsourced list of sensitive IAM Actions☆141Updated 3 months ago
- List of vendors that do not allow IMDSv2 enforcement☆142Updated 9 months ago
- ☆125Updated 2 months ago
- A command line tool that validates AWS IAM Policies in a Terraform template against AWS IAM best practices☆317Updated 7 months ago
- ☆134Updated 3 weeks ago
- Allow users to request temporary elevated access to your AWS environment☆122Updated last year
- Manage AWS Config Rules at scale in AWS multi-account and/or multi-region environment; with fully configurable deployment (RuleSets) and …☆277Updated 4 years ago