Skip to content

aws.auditmanager.list_controls

Example SQL Queries

SELECT * FROM
aws.auditmanager.list_controls
WHERE
"control_type" = 'VALUE';

Description

Returns a list of controls from Audit Manager.

Table Definition

Column NameColumn Data Type
control_type Required Input Column

A filter that narrows the list of controls to a specific type.

VARCHAR
control_catalog_id Input Column

A filter that narrows the list of controls to a specific resource from the Amazon Web Services Control Catalog.

To use this parameter, specify the ARN of the Control Catalog resource. You can specify either a control domain, a control objective, or a common control. For information about how to find the ARNs for these resources, see ListDomains , ListObjectives , and ListCommonControls .

You can only filter by one Control Catalog resource at a time. Specifying multiple resource ARNs isn’t currently supported. If you want to filter by more than one ARN, we recommend that you run the ListControls operation separately for each ARN.

Alternatively, specify UNCATEGORIZED to list controls that aren't mapped to a Control Catalog resource. For example, this operation might return a list of custom controls that don't belong to any control domain or control objective.

VARCHAR
max_results Input Column

The maximum number of results on a page or for an API request call.

BIGINT
next_token Input Column

The pagination token that's used to fetch the next set of results.

VARCHAR
_aws_profile Input Column

The AWS profile defines the AWS identity used. It can be defined via credentials or by assuming a IAM role.

STRUCT(
"type" VARCHAR,
"name" VARCHAR,
"account_id" VARCHAR,
"via_profile_name" VARCHAR,
"assumed_role_arn" VARCHAR,
"organization" STRUCT(
"account_name" VARCHAR,
"id" VARCHAR,
"tags" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[],
"master_account" STRUCT(
"id" VARCHAR,
"email" VARCHAR
),
"parents" STRUCT(
"type" VARCHAR,
"id" VARCHAR,
"name" VARCHAR,
"tags" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[]
)[]
)
)
Show child fields
_aws_profile.account_id

The AWS account id

_aws_profile.assumed_role_arn

The ARN of the assumed role

_aws_profile.name

The unique name of the profile.

_aws_profile.organization

Information about this profile's membership in the AWS organization.

Show child fields
_aws_profile.organization.account_name

The name of account speciifed by the organization

_aws_profile.organization.id

The organization id

_aws_profile.organization.master_account
Show child fields
_aws_profile.organization.master_account.email

The organization master account email address

_aws_profile.organization.master_account.id

The organization master account id

_aws_profile.organization.parents[]
Show child fields
_aws_profile.organization.parents[].id

The id of the parent

_aws_profile.organization.parents[].name

The name of the parent

_aws_profile.organization.parents[].tags[]
Show child fields
_aws_profile.organization.parents[].tags[].key
_aws_profile.organization.parents[].tags[].value
_aws_profile.organization.parents[].type

The type of parent can be an organization unit or a root

_aws_profile.organization.tags[]
Show child fields
_aws_profile.organization.tags[].key
_aws_profile.organization.tags[].value
_aws_profile.type

The type of profile, either 'credentials' or 'assumed_role'

_aws_profile.via_profile_name

This IAM role for this profile is assumed by first utilizing another profile with this name to obtain credentials.

_aws_region Input Column

The AWS region to use.

VARCHAR
control_metadata_list

A list of metadata that the ListControls API returns for each control.

STRUCT(
"arn" VARCHAR,
"id" VARCHAR,
"name" VARCHAR,
"control_sources" VARCHAR,
"created_at" TIMESTAMP_S,
"last_updated_at" TIMESTAMP_S
)[]
Show child fields
control_metadata_list[]
Show child fields
control_metadata_list[].arn

The Amazon Resource Name (ARN) of the control.

control_metadata_list[].control_sources

The data source that determines where Audit Manager collects evidence from for the control.

control_metadata_list[].created_at

The time when the control was created.

control_metadata_list[].id

The unique identifier for the control.

control_metadata_list[].last_updated_at

The time when the control was most recently updated.

control_metadata_list[].name

The name of the control.