Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

(rules): Create an AWS Foundational Security Best Practices (FSBP) rule set #225

Open
2 tasks
benbridts opened this issue Sep 13, 2022 · 2 comments
Open
2 tasks
Labels
feature New feature or request

Comments

@benbridts
Copy link
Contributor

Description

Security Hub has the AWS Foundational Security Best Practices standard: https://docs.aws.amazon.com/securityhub/latest/userguide/securityhub-standards-fsbp.html

It would be nice if there was a rule set for this standard too

Use Case

Customers Using Security Hub can prevent misconfigured resources from being deployed

Proposed Solution

  • Most of the Controls are based on Config, so the files probably already exist
  • A map file can be created
  • There were recently new rules announced, they probably have to be written

Other information

List of the controls: https://docs.aws.amazon.com/securityhub/latest/userguide/securityhub-standards-fsbp-controls.html
New control: https://aws.amazon.com/about-aws/whats-new/2022/09/aws-security-hub-new-security-best-practice-control/

Acknowledge

  • I may be able to implement this feature request
  • This feature might incur a breaking change
@grolston
Copy link
Contributor

Initially the conformance pack sample templates were used to create the first set of mapping files. This additional mapping could be pulled out from the documentation and mapped, though not all controls could be implemented.

@grolston grolston added the feature New feature or request label Sep 19, 2022
@drmmarsunited
Copy link

I am actually working on plugging the gaps for this standard and contributing the mapping. Aiming to be done by end of November or before.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
feature New feature or request
Projects
None yet
Development

No branches or pull requests

3 participants