Authentication

AWS Secrets Manager secret with automatic rotation disabled

Platform(s)
Compliance Frameworks
  • AWS Foundational Security Best Practices Controls
  • ,
  • Brazilian General Data Protection (LGPD)
  • ,
  • CCPA
  • ,
  • CPRA
  • ,
  • Data Security Posture Management (DSPM) Best Practices
  • ,
  • GDPR
  • ,
  • iso_27001_2022
  • ,
  • iso_27002_2022
  • ,
  • NIST 800-171
  • ,
  • NIST 800-53
  • ,
  • PDPA
  • ,
  • UK Cyber Essentials

Description

AWS Secrets Manager helps you to store and protect secrets needed to access your applications, services, and IT resources. Rotating your secrets automatically allows you to replace them frequently. We detected secret {AwsSecretsManagerSecret} is configured with rotation disabled, which is not recommended since rotating limits how long an unauthorized user can use a compromised secret.