Posted On: Oct 6, 2023

We are excited to announce the launch of 22 new proactive controls and 10 AWS Security Hub detective controls in the AWS Control Tower controls library to help you meet regulatory requirements. These new controls are managed by AWS Control Tower and help you meet control objectives such as encrypt data in transit, encrypt data at rest, or use strong authentication. Proactive controls block non-compliant resources before they are provisioned for services such as Amazon Athena, Amazon EMR, AWS Glue, Amazon DynamoDB Accelerator (DAX) and Amazon Neptune. The AWS Security Hub detective controls for services such as Amazon Neptune, Amazon Athena and Amazon RDS help you detect noncompliance of resources within your accounts.

This release increases the range of controls in AWS Control Tower controls library with the addition of controls for services such as Amazon Athena, Amazon EMR and Amazon Neptune. 

AWS Control Tower’s new proactive and detective controls and AWS Security Hub detective controls are available in all AWS Regions where AWS Control Tower is available. For a full list of AWS regions where AWS Control Tower is available,  see AWS Region Table. You can start deploying the AWS Control Tower controls from the console or using AWS Control Tower control APIs.