Medium
RDS
Regional
RDS cluster snapshots and database snapshots should be encrypted at rest
NISTISO 27001HIPAA
Description
Verifies that RDS cluster and database snapshots are encrypted at rest.
Remediation
Copy the snapshot with encryption enabled to create an encrypted snapshot.
Steps
- Sign in to the AWS Management Console and open the Amazon RDS console.
- In the navigation pane, choose 'Snapshots'.
- Select the snapshot and choose 'Actions' > 'Copy Snapshot'.
- Enable 'Encryption' and choose a KMS key.
- Choose 'Copy Snapshot'.
Compliance
NISTISO 27001HIPAA