Skip to main content
All CollectionsTemplatesIntermediate
Enable AWS S3 Bucket Encryption on Alert from Wiz - Workflow Template
Enable AWS S3 Bucket Encryption on Alert from Wiz - Workflow Template

Receive a Wiz issue on an AWS S3 bucket with encryption disabled, lookup owner tag, ask owner or channel to enable AWS256 encryption.

Updated over 7 months ago

This workflow template ensures compliance and data security by automating the process for handling AWS S3 buckets without encryption, as detected by Wiz. It identifies the bucket owner or notifies a designated Slack channel, recommends enabling AWS256 encryption, and either applies the changes upon approval or opens a follow-up ticket if the suggestion is rejected. It is essential for maintaining security standards and aligning with regulatory frameworks like CC6 and SOC2.

Trigger

Wiz

Use Cases

CSPM

Workflow Breakdown

  1. Retrieve tags on the bucket

  2. Reach out to the bucket owner or Slack channel, notify them about the issue

  3. Suggest to remediate by enabling default AES256 encryption on the bucket

  4. Apply changes if the user approves

  5. If user or channel rejects, collect a reason and open a follow-up ticket

  6. Update notes on the Wiz issue id that was provided

Vendors

AWS, Slack, Utils, Wiz, Jira Cloud

Workflow Output

Success/Failure - Jira Ticket and Slack messages

Tips

Setup integration names and Jira information on the first Workflow Context Step

Did this answer your question?