Define and Categorize Assets on AWS

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Before you design your ISMS, identify all the information assets that you need to protect and then devise a technically and financially viable solution for protecting them.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

It can be difficult to quantify every asset in financial terms, so you might find that using qualitative metrics (such as negligible/low/medium/high/very high) is a better option.

See Also

https://d1.awsstatic.com/whitepapers/Security/AWS_Security_Best_Practices.pdf

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-2, 800-53|SC-3

Plugin: amazon_aws

Control ID: 2d280c35b5c23dc303a7f36d7227b9657b9954e26c0f2ae14e6b7a95aa83f749