Medium RDS Regional

RDS DB instances should have encryption at-rest enabled

CISNISTISO 27001HIPAA

Description

Verifies that RDS DB instances have encryption at rest enabled.


Remediation

Enable encryption at-rest for the identified RDS DB instance.

Steps

  1. Log in to the AWS Management Console and open the Amazon RDS console.
  2. Select the RDS DB instance and choose 'Modify'.
  3. In the 'Database options' section, enable 'Encryption'.
  4. Choose a KMS key and save the changes.

Compliance

CISNISTISO 27001HIPAA