This rule focuses on enabling AWS Security Hub for an AWS Account to enhance security measures.
Rule | AWS Security Hub should be enabled for an AWS Account |
Framework | NIST 800-171 Revision 2 |
Severity | ✔ High |
NIST 800-171 Revision 2 - Enable AWS Security Hub
Rule Description
The rule requires AWS Security Hub to be enabled for an AWS Account in order to comply with the NIST 800-171 Revision 2 security standard. AWS Security Hub provides a comprehensive view of security alerts and compliance status across multiple AWS accounts, services, and regions. Enabling AWS Security Hub helps organizations to identify potential security issues and ensure compliance with various security standards.
Troubleshooting Steps
If AWS Security Hub is not already enabled for the AWS Account:
Necessary Code (if any)
No code is required to enable AWS Security Hub. The process can be done entirely through the AWS Management Console.
Step-by-Step Guide for Remediation
Sign in to the AWS Management Console.
Go to the AWS Security Hub console.
If AWS Security Hub is already enabled, you are compliant with the NIST 800-171 Revision 2 requirement.
If AWS Security Hub is not enabled, follow the steps below to enable it.
Note: Ensure that you have the necessary permissions to enable AWS Security Hub.
Step 1: Go to the AWS Security Hub console.
Step 2: Click on the "Enable Security Hub" button.
Step 3: Select the AWS Account for which you want to enable Security Hub.
Step 4: Optionally, select the regions where you want to enable Security Hub.
Step 5: Click on the "Enable Security Hub" button again to confirm the action.
Step 6: Wait for AWS Security Hub to be enabled for the selected AWS Account and regions.
Once AWS Security Hub is enabled, it will start aggregating and displaying security findings, compliance status, and insights for your AWS environments.
Conclusion
Enabling AWS Security Hub for an AWS Account ensures compliance with the NIST 800-171 Revision 2 security standard. By following the provided step-by-step guide, organizations can configure AWS Security Hub to detect and monitor security issues across their AWS environments, assisting in proactive security management and compliance.