Skip to content

aws.inspector2.get_cis_scan_result_details

Example SQL Queries

SELECT * FROM
aws.inspector2.get_cis_scan_result_details
WHERE
"account_id" = 'VALUE'
AND "scan_arn" = 'VALUE'
AND "target_resource_id" = 'VALUE';

Description

Retrieves CIS scan result details.

Table Definition

Column NameColumn Data Type
account_id Required Input Column

The CIS scan result details' account ID.

VARCHAR
scan_arn Required Input Column

The CIS scan result details' scan ARN.

VARCHAR
target_resource_id Required Input Column

The CIS scan result details' target resource ID.

VARCHAR
filter_criteria Input Column

The filter criteria.

STRUCT(
"check_id_filters" STRUCT(
"comparison" VARCHAR,
"value" VARCHAR
)[],
"finding_arn_filters" STRUCT(
"comparison" VARCHAR,
"value" VARCHAR
)[],
"finding_status_filters" STRUCT(
"comparison" VARCHAR,
"value" VARCHAR
)[],
"security_level_filters" STRUCT(
"comparison" VARCHAR,
"value" VARCHAR
)[],
"title_filters" STRUCT(
"comparison" VARCHAR,
"value" VARCHAR
)[]
)
Show child fields
filter_criteria.check_id_filters[]
Show child fields
filter_criteria.check_id_filters[].comparison

The comparison value of the CIS string filter.

filter_criteria.check_id_filters[].value

The value of the CIS string filter.

filter_criteria.finding_arn_filters[]
Show child fields
filter_criteria.finding_arn_filters[].comparison

The comparison value of the CIS string filter.

filter_criteria.finding_arn_filters[].value

The value of the CIS string filter.

filter_criteria.finding_status_filters[]
Show child fields
filter_criteria.finding_status_filters[].comparison

The comparison value of the CIS finding status filter.

filter_criteria.finding_status_filters[].value

The value of the CIS finding status filter.

filter_criteria.security_level_filters[]
Show child fields
filter_criteria.security_level_filters[].comparison

The CIS security filter comparison value.

filter_criteria.security_level_filters[].value

The CIS security filter value.

filter_criteria.title_filters[]
Show child fields
filter_criteria.title_filters[].comparison

The comparison value of the CIS string filter.

filter_criteria.title_filters[].value

The value of the CIS string filter.

sort_by Input Column

The sort by order.

VARCHAR
sort_order Input Column

The sort order.

VARCHAR
_aws_profile Input Column

The AWS profile defines the AWS identity used. It can be defined via credentials or by assuming a IAM role.

STRUCT(
"type" VARCHAR,
"name" VARCHAR,
"account_id" VARCHAR,
"via_profile_name" VARCHAR,
"assumed_role_arn" VARCHAR,
"organization" STRUCT(
"account_name" VARCHAR,
"id" VARCHAR,
"tags" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[],
"master_account" STRUCT(
"id" VARCHAR,
"email" VARCHAR
),
"parents" STRUCT(
"type" VARCHAR,
"id" VARCHAR,
"name" VARCHAR,
"tags" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[]
)[]
)
)
Show child fields
_aws_profile.account_id

The AWS account id

_aws_profile.assumed_role_arn

The ARN of the assumed role

_aws_profile.name

The unique name of the profile.

_aws_profile.organization

Information about this profile's membership in the AWS organization.

Show child fields
_aws_profile.organization.account_name

The name of account speciifed by the organization

_aws_profile.organization.id

The organization id

_aws_profile.organization.master_account
Show child fields
_aws_profile.organization.master_account.email

The organization master account email address

_aws_profile.organization.master_account.id

The organization master account id

_aws_profile.organization.parents[]
Show child fields
_aws_profile.organization.parents[].id

The id of the parent

_aws_profile.organization.parents[].name

The name of the parent

_aws_profile.organization.parents[].tags[]
Show child fields
_aws_profile.organization.parents[].tags[].key
_aws_profile.organization.parents[].tags[].value
_aws_profile.organization.parents[].type

The type of parent can be an organization unit or a root

_aws_profile.organization.tags[]
Show child fields
_aws_profile.organization.tags[].key
_aws_profile.organization.tags[].value
_aws_profile.type

The type of profile, either 'credentials' or 'assumed_role'

_aws_profile.via_profile_name

This IAM role for this profile is assumed by first utilizing another profile with this name to obtain credentials.

_aws_region Input Column

The AWS region to use.

VARCHAR
check_description

The account ID that's associated with the CIS scan result details.

VARCHAR
check_id

The CIS scan result details' check ID.

VARCHAR
finding_arn

The CIS scan result details' finding ARN.

VARCHAR
level

The CIS scan result details' level.

VARCHAR
platform

The CIS scan result details' platform.

VARCHAR
remediation

The CIS scan result details' remediation.

VARCHAR
status

The CIS scan result details' status.

VARCHAR
status_reason

The CIS scan result details' status reason.

VARCHAR
title

The CIS scan result details' title.

VARCHAR