DAT-05.1: Deployments are assessed to identify when sensitive data is in unapproved repositories. This can sometimes be automated using DLP, data security posture management or similar tooling, but may need to be performed with rolling manual assessments due to technology limitations.
Control automation: Either
AWS control specification: Pass if Macie in use
Azure control specification: none
GCP control specification: none
Third-party (CSPM/CNAPP) control specification: none
Description
Control automation: Either
AWS control specification: Pass if Macie in use
Azure control specification: none
GCP control specification: none
Third-party (CSPM/CNAPP) control specification: none