Low GuardDuty Regional

GuardDuty filters should be tagged

Description

Flags Amazon GuardDuty filters that have no user-defined tags. Tags help associate filters with their owning team and rationale; untagged filters are operationally opaque.


Remediation

Apply at least one user-defined tag to every GuardDuty filter.

Steps

  1. Open the Amazon GuardDuty console and choose Findings.
  2. Open the Saved filters list and select the affected filter.
  3. Choose Tags and add at least one tag with a non-aws: prefixed key.
  4. Save the changes.