AWS Security Hub - Detect SQS Queue lacking encryption at rest

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Content Index


This query detects Amazon SQS queues without server-side encryption at rest enabled, using AWS Security Hub control SQS.1 findings. Lack of encryption for SQS queues can expose sensitive message contents if underlying storage or backups are accessed by unauthorized parties.

Attribute Value
Type Analytic Rule
Solution AWS Security Hub
ID 7b8c5e2d-6f1c-4a1f-9e2a-3c5f7a8b9c10
Severity Medium
Status Available
Kind Scheduled
Tactics Impact
Techniques T1565.001
Required Connectors AWSSecurityHub
Source View on GitHub

Tables Used

This content item queries data from the following tables:

Table Transformations Ingestion API Lake-Only
AWSSecurityHubFindings ?

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Analytic Rules · Back to AWS Security Hub