Which solution will meet these requirements with the LEAST amount of effort?

1 Comment

  1. Paul
    Author

    I weigh that the answer is:
    Deploy an AWS Config managed rule to run on a periodic basis of 24 hours. Select the access-keys-rotated managed rule, and set the maxAccessKeyAge parameter to 90 days. Create an Amazon EventBridge (Amazon CloudWatch Events) rule with an event pattern that matches the compliance type of NON_COMPLIANT from AWS Config for the managed rule. Configure EventBridge (CloudWatch Events) to send an Amazon Simple Notification Service (Amazon SNS) notification to the security team.

Leave a Reply to Paul Cancel reply

Your email address will not be published. Required fields are marked *

three − 3 =