Low
Backup
Regional
AWS Backup vaults should be tagged
Description
Flags AWS Backup vaults that have no user-defined tags. Tags help associate vaults with their owning team, environment, and retention policy; untagged vaults are operationally opaque.
Remediation
Apply at least one user-defined tag to every AWS Backup vault.
Steps
- Open the AWS Backup console and choose Backup vaults.
- Select the affected vault.
- Choose Manage tags and add at least one tag with a non-aws: prefixed key.
- Save the changes.