DAT-05.1: Deployments are assessed to identify when sensitive data is in unapproved repositories. This can sometimes be automated using DLP, data security posture management or similar tooling, but may need to be performed with rolling manual assessments due to technology limitations.
  • Control automation: Either
  • AWS control specification: Pass if Macie in use
  • Azure control specification: none
  • GCP control specification: none
  • Third-party (CSPM/CNAPP) control specification: none

Description

  • Control automation: Either
  • AWS control specification: Pass if Macie in use
  • Azure control specification: none
  • GCP control specification: none
  • Third-party (CSPM/CNAPP) control specification: none