Vendor services misconfigurations

Data Lake is not using Lake Formation Access Control

Risk Level

Informational (4)

Platform(s)
Compliance Frameworks

Description

The Data Lake access control in {AwsLakeFormationDataLake.Region} is not fine-grained, and configured to use IAM-based access control instead of LakeFormation access control. It is recommended to use the LakeFormation access control as it is more configurable and allows granting access on a data, table, or column basis. Read more: https://docs.aws.amazon.com/lake-formation/latest/dg/access-control-fine-grained.html""