_aws_profile Input Column
The AWS profile defines the AWS identity used. It can be defined via credentials or by assuming a IAM role. | STRUCT( "type" VARCHAR, "name" VARCHAR, "account_id" VARCHAR, "via_profile_name" VARCHAR, "assumed_role_arn" VARCHAR, "organization" STRUCT( "account_name" VARCHAR, "id" VARCHAR, "tags" STRUCT( "key" VARCHAR, "value" VARCHAR )[], "master_account" STRUCT( "id" VARCHAR, "email" VARCHAR ), "parents" STRUCT( "type" VARCHAR, "id" VARCHAR, "name" VARCHAR, "tags" STRUCT( "key" VARCHAR, "value" VARCHAR )[] )[] ) ) |
control_domain_insights
The control domain analytics data that the ListControlDomainInsights API returned. | STRUCT( "name" VARCHAR, "id" VARCHAR, "controls_count_by_noncompliant_evidence" BIGINT, "total_controls_count" BIGINT, "evidence_insights" STRUCT( "noncompliant_evidence_count" BIGINT, "compliant_evidence_count" BIGINT, "inconclusive_evidence_count" BIGINT ), "last_updated" TIMESTAMP_S )[] |
Show child fields- control_domain_insights[]
Show child fields- control_domain_insights[].controls_count_by_noncompliant_evidence
The number of controls in the control domain that collected non-compliant evidence on the lastUpdated date.
- control_domain_insights[].evidence_insights
A breakdown of the compliance check status for the evidence that’s associated with the control domain. Show child fields- control_domain_insights[].evidence_insights.compliant_evidence_count
The number of compliance check evidence that Audit Manager classified as compliant. This includes evidence that was collected from Security Hub with a Pass ruling, or collected from Config with a Compliant ruling.
- control_domain_insights[].evidence_insights.inconclusive_evidence_count
The number of evidence that a compliance check ruling isn't available for. Evidence is inconclusive when the associated control uses Security Hub or Config as a data source but you didn't enable those services. This is also the case when a control uses a data source that doesn’t support compliance checks (for example, manual evidence, API calls, or CloudTrail). If evidence has a compliance check status of not applicable in the console, it's classified as inconclusive in EvidenceInsights data.
- control_domain_insights[].evidence_insights.noncompliant_evidence_count
The number of compliance check evidence that Audit Manager classified as non-compliant. This includes evidence that was collected from Security Hub with a Fail ruling, or collected from Config with a Non-compliant ruling.
- control_domain_insights[].id
The unique identifier for the control domain. Audit Manager supports the control domains that are provided by Amazon Web Services Control Catalog. For information about how to find a list of available control domains, see ListDomains in the Amazon Web Services Control Catalog API Reference.
- control_domain_insights[].last_updated
The time when the control domain insights were last updated.
- control_domain_insights[].name
The name of the control domain.
- control_domain_insights[].total_controls_count
The total number of controls in the control domain.
|