ollionorg / cloud-custodian-aws-policies
CloudCustodian Rules engine for cloud security and governance, DSL in yaml for policies to query, filter, and take actions on resources
☆18Updated last year
Related projects ⓘ
Alternatives and complementary repositories for cloud-custodian-aws-policies
- Awesome AWS service control policies (SCPs)☆20Updated last week
- Terraform module to provision Service Control Policies (SCP) for AWS Organizations, Organizational Units, and AWS accounts☆50Updated last month
- Implements OPA-based preventive security controls for AWS Infrastructure using Terraform Infrastructure as Code (IaC), that can establish…☆38Updated 11 months ago
- Configure and deploy AWS Security Hub.☆15Updated last year
- ☆37Updated 3 years ago
- This module configures AWS Config, a service that enables you to assess, audit, and evaluate the configurations of your AWS resources.☆46Updated last month
- A GitHub action that runs terratest tests within the repo☆10Updated 2 months ago
- ☆21Updated last year
- Terraform module to suppress specific events from security hub based on a dynamodb based configuration.☆18Updated last week
- Combines AWS Organizations Service Control Policies (SCP)☆52Updated 7 months ago
- Terraform templates for CI/CD to Cloud federation and Cloud2Cloud IAM federations☆58Updated 2 weeks ago
- Cloud governance reports from native services in a clear and readable digest☆29Updated last year
- Run compliance and security controls to detect Terraform AWS resources deviating from security best practices prior to deployment using P…☆25Updated 3 weeks ago
- SCP management tool☆126Updated last year
- Tag instances & databases with cron-style stop/start schedules to cut AWS costs. Also schedule EBS, EC2 & RDS backups, plus CloudFormatio…☆35Updated 2 years ago
- AWS I&A Terraform Module Standards☆16Updated 11 months ago
- A library of example Spacelift policies☆44Updated last month
- ☆41Updated last year
- Safer AWS SCP deployments via real-time monitoring☆44Updated last year
- bash functions to help run aws-cli commands across roles in multiple accounts with MFA☆68Updated 4 years ago
- AWS VPC Subnets Watcher☆73Updated last year
- A cloud security tool to search and clean up unused AWS access keys, written in Go.☆49Updated 2 years ago
- A collection of useful queries that can be used to verify compliance/security across your AWS assets☆31Updated 5 years ago
- ☆27Updated 4 months ago
- The Amazon Elastic Kubernetes Service (EKS) Creation Engine (ECE) is a Python command-line program created by the Lightspin Office of the…☆40Updated last year
- Terraform module to manage AWS Single Sign-On (SSO) resources.☆37Updated last year
- SSH-Restricted deploys an SSH compliance rule (AWS Config) with auto-remediation via AWS Lambda if SSH access is public.☆30Updated 3 years ago
- Terraform module for Policy Sentry.☆24Updated 4 years ago
- Expand IAM Actions with Wildcards☆26Updated 3 weeks ago