Low
GuardDuty
Regional
GuardDuty filters should be tagged
Description
Flags Amazon GuardDuty filters that have no user-defined tags. Tags help associate filters with their owning team and rationale; untagged filters are operationally opaque.
Remediation
Apply at least one user-defined tag to every GuardDuty filter.
Steps
- Open the Amazon GuardDuty console and choose Findings.
- Open the Saved filters list and select the affected filter.
- Choose Tags and add at least one tag with a non-aws: prefixed key.
- Save the changes.