{"repo":"aws-samples/aws-control-tower-controls-terraform","free":true,"listed":false,"github":"https://github.com/aws-samples/aws-control-tower-controls-terraform","clone":"git clone https://github.com/aws-samples/aws-control-tower-controls-terraform.git","description":"This repository describes how to use AWS Control Tower controls, HashiCorp Terraform, and infrastructure as code (IaC) to implement and administer preventive, detective, and proactive security controls. A control (also known as a guardrail) is a high-level rule that provides ongoing governance for your overall AWS Control Tower environment.","language":"HCL","stars":109,"topics":["aws-control-tower","aws-organizations","cloud-native","compliance","compliance-as-code","governance","identity","infrastructure","infrastructure-as-code","management"],"license":"MIT-0","category":"deployment-docker-iac","readme_excerpt":"Deploy and manage AWS Control Tower controls by using Terraform - AWS Prescriptive Guidance - Goal - Prerequisites and Limitations - Architecture - Tools - Best practices - Control Behavior And Guidance - Setup - Requirements - Resources - Inputs - Outputs - Controls Configuration File - AWS Control Catalog - Authors - Security - License AWS Prescriptive Guidance For a complete guide, prerequisites and instructions for using this AWS Prescriptive Guidance pattern, see Deploy and manage AWS Control Tower controls by using Terraform. Goal This pattern describes how to use AWS Control Tower controls, HashiCorp Terraform, and infrastructure as code (IaC) to implement and administer preventive, detective, and proactive security controls. A control (also known as a guardrail) is a high-level rule that provides ongoing governance for your overall AWS Control Tower environment. For example, you can use controls to require logging for your AWS accounts and then configure automatic notifications if specific security-related events occur. AWS Control Tower helps you implement preventive, detective, and proactive controls that govern your AWS resources and monitor compliance across multiple AWS accounts. Each control enforces a single rule. In this pattern, you use a provided IaC template to specify which controls you want to deploy in your environment. AWS Control Tower controls apply to an entire organizational unit (OU), and the control affects every AWS account within the OU. Therefo","default_branch":null,"files":null,"tree":[],"storefront":"/r/aws-samples","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/aws-samples/aws-control-tower-controls-terraform/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}