Configure AWS Backup Audit Manager to audit the compliance of your AWS Backup policies against controls that you define. This template deploys the AWS backup framework (a collection of controls that helps you to evaluate your backup practices) and (optionally) automatic daily reports for the compliance status of the frameworks set up.

Audit Frameworks

By default, this template deploys the AWS Backup framework which includes all 5 available controls to monitor backup activity, coverage, and resources against AWS best practices. Optionally, you can customize the framework to customize (or remove) the specific controls which include: 

  • Backup resources protected by backup plan
  • Backup plan minimum frequency and minimum retention
  • Backup prevent recovery point manual deletion
  • Backup recovery point encrypted
  • Backup recovery point minimum retention

Audit Reports

Create automatic daily audit reports:

  • Compliance Reports: Control or Resource Compliance Reports for audit frameworks
  • Backup Activity Reports
    • Backup Jobs Report
    • Restore Jobs Report
    • Copy Jobs Report

Important: If using an existing S3 bucket to store reports, ensure that it has the appropriate permissions to allow  

Framework
AWS::Backup::Framework


FrameworkControls *
ControlInputParameters
ControlScope

ComplianceResourceIds

ComplianceResourceTypes

Tags
ControlInputParameters
ControlScope

ComplianceResourceIds

ComplianceResourceTypes

Tags

CloudFormation Template

Share Template