Amazon Macie

A collection of AWS Security controls for Amazon Macie. Configuration items include templates to enable Amazon Macie in an AWS account as well as configuration to set up notifications on findings.

Enable Amazon Macie
Configuration to enable Amazon Macie in an AWS Account. Amazon Macie is used to discover, monitor, and help protect sensitive data in Amazon S3 Buckets.
CloudWatch Events
Detect Amazon Macie Findings
A CloudWatch Event Rule that triggers on Amazon Macie findings. The Event Rule can be used to trigger notifications or remediative actions using AWS Lambda.
Service Control Policy
Prevent Users from Disabling Amazon Macie in an account
This SCP prevents users or roles in any affected account from disabling Amazon Macie, deleting member accounts or disassociating an account from a master Macie account.
