Skip to main content

๐Ÿ’ผ [DataFirehose.1] Firehose delivery streams should be encrypted at rest

  • Contextual name: ๐Ÿ’ผ [DataFirehose.1] Firehose delivery streams should be encrypted at rest
  • ID: /frameworks/aws-fsbp-v1.0.0/data-firehouse/01
  • Located in: ๐Ÿ’ผ Data Firehouse

Descriptionโ€‹

Server-side encryption is a feature in Amazon Data Firehose delivery streams that automatically encrypts data before it's at rest by using a key created in AWS Key Management Service (AWS KMS). Data is encrypted before it's written to the Data Firehose stream storage layer, and decrypted after it's retrieved from storage. This allows you to comply with regulatory requirements and enhance the security of your data.

Similarโ€‹

Similar Sections (Give Policies To)โ€‹

SectionSub SectionsInternal RulesPoliciesFlags
๐Ÿ’ผ NIST SP 800-53 Revision 5 โ†’ ๐Ÿ’ผ AC-3 Access Enforcement15534
๐Ÿ’ผ NIST SP 800-53 Revision 5 โ†’ ๐Ÿ’ผ AU-3 Content of Audit Records31328
๐Ÿ’ผ NIST SP 800-53 Revision 5 โ†’ ๐Ÿ’ผ SC-12 Cryptographic Key Establishment and Management617
๐Ÿ’ผ NIST SP 800-53 Revision 5 โ†’ ๐Ÿ’ผ SC-13 Cryptographic Protection413
๐Ÿ’ผ NIST SP 800-53 Revision 5 โ†’ ๐Ÿ’ผ SC-28 Protection of Information at Rest31625

Sub Sectionsโ€‹

SectionSub SectionsInternal RulesPoliciesFlags