AWS S3 bucket Terraform module
Upstream version 5.15.3
8 controls from NYDFS Cybersecurity Regulation requirements
Terraform Module Source
nydfs23.compliance.tf/terraform-aws-modules/s3-bucket/awsS3 buckets should have cross-region replication enabled
s3_bucket_cross_region_replication_enabled500.02(b)(5)
Framework requirement
S3 buckets should have default encryption enabled using KMS
s3_bucket_default_encryption_enabled_kms500.15(a)
Framework requirement
S3 buckets should have logging enabled
s3_bucket_logging_enabled500.14(a)
Framework requirement
S3 buckets should have object lock enabled
s3_bucket_object_lock_enabled500.02(a)
Framework requirement
S3 buckets should have policies that prohibit public access
s3_bucket_policy_restrict_public_access500.07
Framework requirement
S3 buckets should prohibit public read access
s3_bucket_restrict_public_read_access500.07
Framework requirement
S3 buckets should have versioning enabled
s3_bucket_versioning_enabled500.02(b)(5)
Framework requirement
S3 public access should be blocked at account level
s3_public_access_block_account500.07
Framework requirement