Skip to content

Commit 363ccb3

Browse files
authored
Merge pull request #20 from secyed/patch-7
Update README.md
2 parents 00aeb49 + 0e1eab7 commit 363ccb3

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

Sensitive-data-protection/README.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,7 @@
33
Implement controls that protect your sensitive data, that should not be made publicly accessible or deleted intentionally or unintentionally.
44

55

6-
| Included Policy | Rational |
6+
| Included Policy | Rationale |
77
|------|-------------|
88
|[Deny resource sharing through AWS Resource access manager outside your organization](https://docs.aws.amazon.com/organizations/latest/userguide/orgs_manage_policies_scps_examples_ram.html#example_ram_1) | Deny users from creating resource shares using AWS RAM that allow sharing with IAM users and roles that aren't part of the organization.|
99
|[Deny users from deleting Amazon Glacier vaults or archives](Deny-users-from-deleting-Amazon-Glacier-vaults-or-archives.json)| Restrict users or roles in any affected account from deleting any S3 Glacier vaults or archives.Consider replacing "Resource":"*" with specific sensitive Glacier vaults/archive resources to allow developers freedom to manage other vaults/archives.|

0 commit comments

Comments
 (0)