Medium SageMaker Regional

SageMaker models should have network isolation enabled

FSBP

Description

Verifies that SageMaker hosted models have network isolation enabled, preventing the model container from making outbound network calls.


Remediation

Enable network isolation for SageMaker models to restrict network access and prevent unintended exposure.

Steps

  1. Open the Amazon SageMaker console.
  2. Navigate to 'Models' in the left navigation pane.
  3. Select the model that needs remediation.
  4. Click on 'Edit' or 'Update'.
  5. Under 'Network isolation', enable 'Enable network isolation'.
  6. Save the model configuration.

Compliance

FSBP