Best practices

Backup vault should have a policy

Risk Level

Informational (4)



AWS Backup is a fully-managed service that protects data across AWS services. We identified a Backup vault '{AwsBackupVault}' which does not contain policy. Policy associated with an identity, defines their permissions, in backup vault case, the ability to restore, update and delete actions. The best practice is to ensure backup vaults have a policy configured to prevent unintentional deletion.