Skip to main content

💼 [DataFirehose.1] Firehose delivery streams should be encrypted at rest

  • Contextual name: 💼 [DataFirehose.1] Firehose delivery streams should be encrypted at rest
  • ID: /frameworks/aws-fsbp-v1.0.0/data-firehouse/01
  • Located in: 💼 Data Firehouse

Description​

Server-side encryption is a feature in Amazon Data Firehose delivery streams that automatically encrypts data before it's at rest by using a key created in AWS Key Management Service (AWS KMS). Data is encrypted before it's written to the Data Firehose stream storage layer, and decrypted after it's retrieved from storage. This allows you to comply with regulatory requirements and enhance the security of your data.

Similar​

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
💼 NIST SP 800-53 Revision 5 → 💼 AC-3 Access Enforcement15537
💼 NIST SP 800-53 Revision 5 → 💼 AU-3 Content of Audit Records31328
💼 NIST SP 800-53 Revision 5 → 💼 SC-12 Cryptographic Key Establishment and Management617
💼 NIST SP 800-53 Revision 5 → 💼 SC-13 Cryptographic Protection413
💼 NIST SP 800-53 Revision 5 → 💼 SC-28 Protection of Information at Rest31625

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags