How to Assess AWS Services for ISO27001 Compliance?

0
0
Asked By CloudyPenguin23 On

Hey everyone! I'm looking to conduct an ISO27001 assessment (specifically Annex A) on the AWS services in my account to ensure they're compliant with this standard. I was thinking of enabling AWS Config and AWS Security Hub, but I discovered that Security Hub doesn't support the ISO27001 framework. I'm unsure of the best approach here. Would it make sense to pick a CIS framework and do some mapping instead? Any insights would be appreciated!

1 Answer

Answered By TechSavvy101 On

Hey! I'd suggest looking into AWS Audit Manager. It offers prebuilt frameworks which might be perfect for what you need. There's also a thorough resource on CIS Benchmarks that could be useful. Check out those links if you have time!

ISO_Nerd -

Thanks for the tips! The Audit Manager sounds promising, and I like that it provides mappings for AWS config rules related to ISO27001.

Related Questions

LEAVE A REPLY

Please enter your comment!
Please enter your name here

This site uses Akismet to reduce spam. Learn how your comment data is processed.