High
GuardDuty
Regional
GuardDuty Lambda Protection should be enabled
PCI DSS v4.0.1PCI DSS v11.5.1
Description
Verifies that GuardDuty Lambda Protection is enabled across all accounts. Lambda Protection monitors network activity logs for Lambda invocations to identify potential security threats.
Remediation
To enable GuardDuty Lambda Protection, you need to configure the Lambda protection settings in GuardDuty.
Steps
- Navigate to the Amazon GuardDuty console
- Go to 'Settings' in the left navigation
- Select 'Lambda Protection'
- Enable 'Lambda Protection'
- Configure the protection settings as needed
- Save the configuration
- Verify that Lambda protection is active
Compliance
PCI DSS v4.0.1PCI DSS v11.5.1