More Info:

This rule checks if Amazon Macie is enabled in your account per region. The rule is NON_COMPLIANT if the ‘status’ attribute is not set to ‘ENABLED’.

Risk Level

High

Addresses

Configuration

Compliance Standards

CBP

Triage and Remediation

Remediation

To remediate the misconfiguration of Macie not being enabled in the AWS account per region, you can follow these steps using the AWS Management Console:

  1. Sign in to the AWS Management Console:

  2. Navigate to Macie Service:

    • In the AWS Management Console, search for “Macie” in the services search bar and select the Amazon Macie service.
  3. Enable Macie in the Account:

    • In the Macie dashboard, click on the “Get Started” button to enable Macie in your account.
    • Follow the on-screen instructions to set up Macie for your account. This may include configuring the Macie settings, such as choosing the regions where you want Macie to be enabled.
  4. Enable Macie in Each Region:

    • To enable Macie in each region, navigate to the Macie service in each region by selecting the region from the top right corner of the AWS Management Console.
    • Follow the same steps as mentioned in step 3 to enable Macie in each region where you want it to be enabled.
  5. Verify Macie Configuration:

    • Once Macie is enabled in the account and in each region, verify that the service is configured correctly by checking the Macie dashboard and settings in each region.
  6. Monitor Macie Alerts:

    • Set up alerts and notifications in Macie to monitor and receive alerts for any security findings or sensitive data discovery in your account.

By following these steps, you can remediate the misconfiguration of Macie not being enabled in the AWS account per region and ensure that Macie is set up and configured correctly to help with data security and compliance in your AWS environment.