Low
CodeBuild
Regional
CodeBuild S3 logs should be encrypted
NISTISO 27001
Description
Verifies that S3 log storage for CodeBuild projects has encryption enabled.
Remediation
To ensure the encryption of CodeBuild project S3 logs, enable encryption in the S3 logs configuration.
Steps
- Open the AWS CodeBuild console.
- Select the build project to modify.
- Navigate to the 'Logs' section in the project settings.
- Ensure that 'S3 logs' is enabled and 'Encryption disabled' is not checked.
- Save the changes to the project configuration.
Compliance
NISTISO 27001