{"id":19810,"date":"2023-04-27T02:06:52","date_gmt":"2023-04-26T22:36:52","guid":{"rendered":"https:\/\/nabfollower.com\/blog\/how-to-automate-compliance-checks-with-aws-audit-manager-2f8n\/"},"modified":"2023-04-27T02:06:52","modified_gmt":"2023-04-26T22:36:52","slug":"how-to-automate-compliance-checks-with-aws-audit-manager-2f8n","status":"publish","type":"post","link":"https:\/\/nabfollower.com\/blog\/how-to-automate-compliance-checks-with-aws-audit-manager-2f8n\/","title":{"rendered":"\u0646\u062d\u0648\u0647 \u062e\u0648\u062f\u06a9\u0627\u0631\u0633\u0627\u0632\u06cc \u0628\u0631\u0631\u0633\u06cc \u0627\u0646\u0637\u0628\u0627\u0642 \u0628\u0627 AWS Audit Manager"},"content":{"rendered":"<div data-article-id=\"1449187\" id=\"article-body\">\n<p>AWS Audit Manager \u0633\u0631\u0648\u06cc\u0633\u06cc \u0627\u0633\u062a \u06a9\u0647 \u0641\u0631\u0622\u06cc\u0646\u062f \u0645\u0645\u06cc\u0632\u06cc \u0648 \u0645\u062f\u06cc\u0631\u06cc\u062a \u0686\u0627\u0631\u0686\u0648\u0628 \u0647\u0627\u06cc \u0627\u0646\u0637\u0628\u0627\u0642 \u062f\u0631 AWS \u0631\u0627 \u0633\u0627\u062f\u0647 \u0645\u06cc \u06a9\u0646\u062f.  \u0686\u0627\u0631\u0686\u0648\u0628 \u0647\u0627\u06cc \u062d\u0633\u0627\u0628\u0631\u0633\u06cc \u0627\u0632 \u067e\u06cc\u0634 \u0633\u0627\u062e\u062a\u0647 \u0648 \u0642\u0627\u0628\u0644 \u062a\u0646\u0638\u06cc\u0645 \u0631\u0627 \u0628\u0631\u0627\u06cc \u06a9\u0645\u06a9 \u0628\u0647 \u0627\u0631\u0632\u06cc\u0627\u0628\u06cc \u0627\u0646\u0637\u0628\u0627\u0642 \u0633\u0627\u0632\u0645\u0627\u0646 \u062e\u0648\u062f \u0628\u0627 \u0627\u0633\u062a\u0627\u0646\u062f\u0627\u0631\u062f\u0647\u0627\u06cc \u0635\u0646\u0639\u062a\u06cc \u0648 \u0646\u0638\u0627\u0631\u062a\u06cc\u060c \u0645\u0627\u0646\u0646\u062f SOC 2\u060c HIPAA\u060c \u0648 PCI DSS \u0627\u0631\u0627\u0626\u0647 \u0645\u06cc \u062f\u0647\u062f.  AWS Audit Manager \u0647\u0645\u0686\u0646\u06cc\u0646 \u0628\u0627 \u0633\u0627\u06cc\u0631 \u0633\u0631\u0648\u06cc\u0633\u200c\u0647\u0627\u06cc AWS \u0645\u0627\u0646\u0646\u062f AWS Config \u0648 AWS CloudTrail \u06cc\u06a9\u067e\u0627\u0631\u0686\u0647 \u0645\u06cc\u200c\u0634\u0648\u062f \u062a\u0627 \u062c\u0645\u0639\u200c\u0622\u0648\u0631\u06cc \u0634\u0648\u0627\u0647\u062f \u0631\u0627 \u062e\u0648\u062f\u06a9\u0627\u0631 \u06a9\u0646\u062f \u0648 \u0627\u0637\u0645\u06cc\u0646\u0627\u0646 \u062d\u0627\u0635\u0644 \u06a9\u0646\u062f \u06a9\u0647 \u0632\u06cc\u0631\u0633\u0627\u062e\u062a \u0634\u0645\u0627 \u0628\u0627 \u0627\u0644\u0632\u0627\u0645\u0627\u062a \u062d\u0633\u0627\u0628\u0631\u0633\u06cc \u0634\u0645\u0627 \u0645\u0637\u0627\u0628\u0642\u062a \u062f\u0627\u0631\u062f.<\/p>\n<p>\u0628\u0627 \u0627\u06cc\u0646 \u062d\u0627\u0644\u060c \u062d\u062a\u06cc \u0628\u0627 \u06a9\u0645\u06a9 \u0645\u062f\u06cc\u0631\u06cc\u062a \u062d\u0633\u0627\u0628\u0631\u0633\u06cc AWS\u060c \u0628\u0631\u0631\u0633\u06cc\u200c\u0647\u0627\u06cc \u0627\u0646\u0637\u0628\u0627\u0642 \u0647\u0645\u0686\u0646\u0627\u0646 \u0645\u06cc\u200c\u062a\u0648\u0627\u0646\u062f \u0632\u0645\u0627\u0646\u200c\u0628\u0631 \u0648 \u0645\u0633\u062a\u0639\u062f \u062e\u0637\u0627 \u0628\u0627\u0634\u062f \u0627\u06af\u0631 \u0628\u0647 \u0635\u0648\u0631\u062a \u062f\u0633\u062a\u06cc \u0627\u0646\u062c\u0627\u0645 \u0634\u0648\u062f.  \u062f\u0631 \u0627\u06cc\u0646 \u0645\u0642\u0627\u0644\u0647\u060c \u0646\u062d\u0648\u0647 \u062e\u0648\u062f\u06a9\u0627\u0631\u0633\u0627\u0632\u06cc \u0628\u0631\u0631\u0633\u06cc\u200c\u0647\u0627\u06cc \u0627\u0646\u0637\u0628\u0627\u0642 \u0628\u0627 AWS Audit Manager \u0628\u0627 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0627\u0632 AWS Lambda \u0631\u0627 \u0628\u0631\u0631\u0633\u06cc \u062e\u0648\u0627\u0647\u0645 \u06a9\u0631\u062f.  \u0628\u0647 \u0637\u0648\u0631 \u062e\u0627\u0635\u060c \u0645\u0627 \u06cc\u06a9 \u062a\u0627\u0628\u0639 Lambda \u0627\u06cc\u062c\u0627\u062f \u062e\u0648\u0627\u0647\u06cc\u0645 \u06a9\u0631\u062f \u06a9\u0647 \u0631\u0648\u0632\u0627\u0646\u0647 \u0627\u062c\u0631\u0627 \u0645\u06cc \u0634\u0648\u062f \u0648 \u0628\u0627 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0627\u0632 \u06cc\u06a9 \u0686\u0627\u0631\u0686\u0648\u0628 \u0645\u0645\u06cc\u0632\u06cc \u0633\u0641\u0627\u0631\u0634\u06cc\u060c \u0628\u0631\u0631\u0633\u06cc \u0647\u0627\u06cc \u0627\u0646\u0637\u0628\u0627\u0642 \u0631\u0627 \u062f\u0631 \u06cc\u06a9 \u0633\u0637\u0644 S3 \u0627\u0646\u062c\u0627\u0645 \u0645\u06cc \u062f\u0647\u062f.<\/p>\n<p><strong>\u067e\u06cc\u0634 \u0646\u06cc\u0627\u0632\u0647\u0627<\/strong><br \/>\u0642\u0628\u0644 \u0627\u0632 \u0634\u0631\u0648\u0639\u060c \u0645\u0646 \u0628\u0627\u06cc\u062f \u067e\u06cc\u0634 \u0646\u06cc\u0627\u0632\u0647\u0627\u06cc \u0632\u06cc\u0631 \u0631\u0627 \u062a\u0646\u0638\u06cc\u0645 \u06a9\u0646\u0645:<\/p>\n<ol>\n<li>\u06cc\u06a9 \u062d\u0633\u0627\u0628 AWS \u0628\u0627 \u0645\u062c\u0648\u0632 \u0628\u0631\u0627\u06cc \u0627\u06cc\u062c\u0627\u062f \u0646\u0642\u0634\u200c\u0647\u0627\u06cc IAM\u060c \u062a\u0648\u0627\u0628\u0639 Lambda \u0648 \u0645\u0646\u0627\u0628\u0639 \u0645\u062f\u06cc\u0631\u06cc\u062a \u062d\u0633\u0627\u0628\u0631\u0633\u06cc AWS.<\/li>\n<li>\u06cc\u06a9 \u0633\u0637\u0644 S3 \u06a9\u0647 \u0645\u06cc \u062e\u0648\u0627\u0647\u06cc\u062f \u062d\u0633\u0627\u0628\u0631\u0633\u06cc \u06a9\u0646\u06cc\u062f.  \u0627\u06cc\u0646 \u0633\u0637\u0644 \u0628\u0627\u06cc\u062f \u062f\u0627\u0631\u0627\u06cc \u0627\u0634\u06cc\u0627\u06cc\u06cc \u0628\u0627\u0634\u062f \u06a9\u0647 \u0628\u0627\u06cc\u062f \u0628\u0627 \u0686\u0627\u0631\u0686\u0648\u0628 \u062d\u0633\u0627\u0628\u0631\u0633\u06cc \u0633\u0641\u0627\u0631\u0634\u06cc \u0634\u0645\u0627 \u0645\u0637\u0627\u0628\u0642\u062a \u062f\u0627\u0634\u062a\u0647 \u0628\u0627\u0634\u0646\u062f.<\/li>\n<li>\u06cc\u06a9 \u0686\u0627\u0631\u0686\u0648\u0628 \u062d\u0633\u0627\u0628\u0631\u0633\u06cc \u0633\u0641\u0627\u0631\u0634\u06cc AWS Audit Manager \u06a9\u0647 \u06a9\u0646\u062a\u0631\u0644\u200c\u0647\u0627\u06cc\u06cc \u0631\u0627 \u06a9\u0647 \u0645\u06cc\u200c\u062e\u0648\u0627\u0647\u06cc\u062f \u0628\u0631 \u0631\u0648\u06cc \u0633\u0637\u0644 S3 \u0627\u0639\u0645\u0627\u0644 \u06a9\u0646\u06cc\u062f\u060c \u062a\u0639\u0631\u06cc\u0641 \u0645\u06cc\u200c\u06a9\u0646\u062f.  \u0645\u06cc\u200c\u062a\u0648\u0627\u0646\u06cc\u062f \u0628\u0627 \u067e\u06cc\u0631\u0648\u06cc \u0627\u0632 \u062f\u0633\u062a\u0648\u0631\u0627\u0644\u0639\u0645\u0644\u200c\u0647\u0627\u06cc \u0645\u0633\u062a\u0646\u062f\u0627\u062a \u0645\u062f\u06cc\u0631\u06cc\u062a \u062d\u0633\u0627\u0628\u0631\u0633\u06cc AWS\u060c \u06cc\u06a9 \u0686\u0627\u0631\u0686\u0648\u0628 \u062d\u0633\u0627\u0628\u0631\u0633\u06cc \u0633\u0641\u0627\u0631\u0634\u06cc \u0627\u06cc\u062c\u0627\u062f \u06a9\u0646\u06cc\u062f.<\/li>\n<li>\u06cc\u06a9 \u062a\u0627\u0628\u0639 AWS Lambda \u06a9\u0647 \u0628\u0631\u0631\u0633\u06cc \u0647\u0627\u06cc \u0627\u0646\u0637\u0628\u0627\u0642 \u0631\u0627 \u062f\u0631 \u0633\u0637\u0644 S3 \u0627\u0646\u062c\u0627\u0645 \u0645\u06cc \u062f\u0647\u062f.  \u0627\u06cc\u0646 \u062a\u0627\u0628\u0639 \u0631\u0627 \u062f\u0631 \u0642\u0633\u0645\u062a \u0647\u0627\u06cc \u0632\u06cc\u0631 \u0627\u06cc\u062c\u0627\u062f \u0645\u06cc \u06a9\u0646\u06cc\u0645.<\/li>\n<\/ol>\n<p><strong>\u0627\u06cc\u062c\u0627\u062f \u062a\u0627\u0628\u0639 \u0644\u0627\u0645\u0628\u062f\u0627<\/strong><br \/>\u062f\u0631 \u0627\u06cc\u0646 \u0628\u062e\u0634\u060c \u0645\u0646 \u06cc\u06a9 \u062a\u0627\u0628\u0639 Lambda \u0627\u06cc\u062c\u0627\u062f \u0645\u06cc \u06a9\u0646\u0645 \u06a9\u0647 \u0628\u0627 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0627\u0632 \u0686\u0627\u0631\u0686\u0648\u0628 \u0645\u0645\u06cc\u0632\u06cc \u0633\u0641\u0627\u0631\u0634\u06cc \u0645\u0627\u060c \u0628\u0631\u0631\u0633\u06cc \u0647\u0627\u06cc \u0627\u0646\u0637\u0628\u0627\u0642 \u0631\u0627 \u062f\u0631 \u06cc\u06a9 \u0633\u0637\u0644 S3 \u0627\u0646\u062c\u0627\u0645 \u0645\u06cc \u062f\u0647\u062f.<\/p>\n<p><strong>\u0645\u0631\u062d\u0644\u0647 1: \u06cc\u06a9 \u0646\u0642\u0634 IAM \u0628\u0631\u0627\u06cc \u062a\u0627\u0628\u0639 Lambda \u0627\u06cc\u062c\u0627\u062f \u06a9\u0646\u06cc\u062f<\/strong><br \/>\u0627\u0628\u062a\u062f\u0627 \u06cc\u06a9 \u0646\u0642\u0634 IAM \u0627\u06cc\u062c\u0627\u062f \u0645\u06cc \u06a9\u0646\u06cc\u0645 \u06a9\u0647 \u062a\u0627\u0628\u0639 Lambda \u0627\u0632 \u0622\u0646 \u0628\u0631\u0627\u06cc \u062a\u0639\u0627\u0645\u0644 \u0628\u0627 \u0633\u0631\u0648\u06cc\u0633 \u0647\u0627\u06cc AWS \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0645\u06cc \u06a9\u0646\u062f.<\/p>\n<ol>\n<li>\u06a9\u0646\u0633\u0648\u0644 IAM \u0631\u0627 \u0628\u0627\u0632 \u06a9\u0646\u06cc\u062f.<\/li>\n<li>\u062f\u0631 \u0645\u0646\u0648\u06cc \u0646\u0627\u0648\u0628\u0631\u06cc \u0633\u0645\u062a \u0686\u067e \u0631\u0648\u06cc &#8220;\u0646\u0642\u0634 \u0647\u0627&#8221; \u06a9\u0644\u06cc\u06a9 \u06a9\u0646\u06cc\u062f.<\/li>\n<li>\u0631\u0648\u06cc &#8220;\u0627\u06cc\u062c\u0627\u062f \u0646\u0642\u0634&#8221; \u06a9\u0644\u06cc\u06a9 \u06a9\u0646\u06cc\u062f.<\/li>\n<li>&#8220;Lambda&#8221; \u0631\u0627 \u0628\u0647 \u0639\u0646\u0648\u0627\u0646 \u0645\u0648\u062c\u0648\u062f\u06cc\u062a \u0645\u0648\u0631\u062f \u0627\u0639\u062a\u0645\u0627\u062f \u0627\u0646\u062a\u062e\u0627\u0628 \u06a9\u0646\u06cc\u062f \u0648 \u0631\u0648\u06cc &#8220;Next: Permissions&#8221; \u06a9\u0644\u06cc\u06a9 \u06a9\u0646\u06cc\u062f.<\/li>\n<li>\u062e\u0637 \u0645\u0634\u06cc &#8220;AWSAuditManagerFullAccess&#8221; \u0631\u0627 \u062c\u0633\u062a\u062c\u0648 \u0648 \u0627\u0646\u062a\u062e\u0627\u0628 \u06a9\u0646\u06cc\u062f.  \u0627\u06cc\u0646 \u062e\u0637\u200c\u0645\u0634\u06cc \u062f\u0633\u062a\u0631\u0633\u06cc \u06a9\u0627\u0645\u0644 \u0628\u0647 \u0645\u0646\u0627\u0628\u0639 \u0645\u062f\u06cc\u0631\u06cc\u062a \u062d\u0633\u0627\u0628\u0631\u0633\u06cc AWS \u0631\u0627 \u0645\u06cc\u200c\u062f\u0647\u062f\u060c \u06a9\u0647 \u0628\u0631\u0627\u06cc \u062a\u0639\u0627\u0645\u0644 \u0639\u0645\u0644\u06a9\u0631\u062f Lambda \u0645\u0627 \u0628\u0627 \u0645\u062f\u06cc\u0631 \u062d\u0633\u0627\u0628\u0631\u0633\u06cc AWS \u0644\u0627\u0632\u0645 \u0627\u0633\u062a.<\/li>\n<li>\u0631\u0648\u06cc \u00ab\u0628\u0639\u062f\u06cc: \u0628\u0631\u0686\u0633\u0628\u200c\u0647\u0627\u00bb \u06a9\u0644\u06cc\u06a9 \u06a9\u0646\u06cc\u062f\u060c \u0647\u0631 \u0628\u0631\u0686\u0633\u0628\u06cc \u0631\u0627 \u06a9\u0647 \u0645\u06cc\u200c\u062e\u0648\u0627\u0647\u06cc\u062f \u0627\u0636\u0627\u0641\u0647 \u06a9\u0646\u06cc\u062f \u0648 \u0631\u0648\u06cc \u00ab\u0628\u0639\u062f\u06cc: \u0645\u0631\u0648\u0631\u00bb \u06a9\u0644\u06cc\u06a9 \u06a9\u0646\u06cc\u062f.<\/li>\n<li>\u06cc\u06a9 \u0646\u0627\u0645 \u0628\u0631\u0627\u06cc \u0646\u0642\u0634 \u0648\u0627\u0631\u062f \u06a9\u0646\u06cc\u062f\u060c \u0645\u0627\u0646\u0646\u062f &#8220;Lambda-Audit-Role&#8221; \u0648 \u0631\u0648\u06cc &#8220;\u0627\u06cc\u062c\u0627\u062f \u0646\u0642\u0634&#8221; \u06a9\u0644\u06cc\u06a9 \u06a9\u0646\u06cc\u062f.<\/li>\n<\/ol>\n<p><strong>\u0645\u0631\u062d\u0644\u0647 2: \u062a\u0627\u0628\u0639 Lambda \u0631\u0627 \u0627\u06cc\u062c\u0627\u062f \u06a9\u0646\u06cc\u062f<\/strong><br \/>\u0627\u06a9\u0646\u0648\u0646\u060c \u0645\u0627 \u062a\u0627\u0628\u0639 Lambda \u0631\u0627 \u0627\u06cc\u062c\u0627\u062f \u0645\u06cc \u06a9\u0646\u06cc\u0645 \u06a9\u0647 \u0628\u0627 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0627\u0632 \u0686\u0627\u0631\u0686\u0648\u0628 \u0645\u0645\u06cc\u0632\u06cc \u0633\u0641\u0627\u0631\u0634\u06cc\u060c \u0628\u0631\u0631\u0633\u06cc \u0647\u0627\u06cc \u0627\u0646\u0637\u0628\u0627\u0642 \u0631\u0627 \u062f\u0631 \u0633\u0637\u0644 S3 \u0627\u0646\u062c\u0627\u0645 \u0645\u06cc \u062f\u0647\u062f.<\/p>\n<ol>\n<li>\u06a9\u0646\u0633\u0648\u0644 \u0644\u0627\u0645\u0628\u062f\u0627 \u0631\u0627 \u0628\u0627\u0632 \u06a9\u0646\u06cc\u062f.<\/li>\n<li>\u0631\u0648\u06cc &#8220;\u0627\u06cc\u062c\u0627\u062f \u062a\u0627\u0628\u0639&#8221; \u06a9\u0644\u06cc\u06a9 \u06a9\u0646\u06cc\u062f.<\/li>\n<li>&#8220;\u0646\u0648\u06cc\u0633\u0646\u062f\u0647 \u0627\u0632 \u0627\u0628\u062a\u062f\u0627&#8221; \u0631\u0627 \u0627\u0646\u062a\u062e\u0627\u0628 \u06a9\u0646\u06cc\u062f \u0648 \u06cc\u06a9 \u0646\u0627\u0645 \u0628\u0631\u0627\u06cc \u0639\u0645\u0644\u06a9\u0631\u062f \u062e\u0648\u062f \u0648\u0627\u0631\u062f \u06a9\u0646\u06cc\u062f\u060c \u0645\u0627\u0646\u0646\u062f &#8220;S3-Audit-Function&#8221;.<\/li>\n<li>\u0632\u0645\u0627\u0646 \u0627\u062c\u0631\u0627 \u0631\u0627 \u0628\u0647 \u0639\u0646\u0648\u0627\u0646 &#8220;Python 3.8&#8221; \u0627\u0646\u062a\u062e\u0627\u0628 \u06a9\u0646\u06cc\u062f.<\/li>\n<li>\u06af\u0632\u06cc\u0646\u0647 \u00ab\u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0627\u0632 \u0646\u0642\u0634 \u0645\u0648\u062c\u0648\u062f\u00bb \u0631\u0627 \u0627\u0646\u062a\u062e\u0627\u0628 \u06a9\u0646\u06cc\u062f \u0648 \u0646\u0642\u0634 IAM \u00abLambda-Audit-Role\u00bb \u0631\u0627 \u06a9\u0647 \u062f\u0631 \u0645\u0631\u062d\u0644\u0647 \u0642\u0628\u0644 \u0627\u06cc\u062c\u0627\u062f \u06a9\u0631\u062f\u06cc\u062f \u0627\u0646\u062a\u062e\u0627\u0628 \u06a9\u0646\u06cc\u062f.<\/li>\n<li>\u0628\u0631\u0627\u06cc \u0627\u06cc\u062c\u0627\u062f \u062a\u0627\u0628\u0639 \u0631\u0648\u06cc &#8220;\u0627\u06cc\u062c\u0627\u062f \u062a\u0627\u0628\u0639&#8221; \u06a9\u0644\u06cc\u06a9 \u06a9\u0646\u06cc\u062f.<\/li>\n<\/ol>\n<p><strong>\u0645\u0631\u062d\u0644\u0647 3: \u06a9\u062f \u0631\u0627 \u0628\u0631\u0627\u06cc \u0627\u0646\u062c\u0627\u0645 \u0628\u0631\u0631\u0633\u06cc \u0647\u0627\u06cc \u0627\u0646\u0637\u0628\u0627\u0642 \u0627\u0636\u0627\u0641\u0647 \u06a9\u0646\u06cc\u062f<\/strong><br \/>\u0627\u06a9\u0646\u0648\u0646 \u06a9\u0647 \u062a\u0627\u0628\u0639 Lambda \u0631\u0627 \u0627\u06cc\u062c\u0627\u062f \u06a9\u0631\u062f\u0647\u200c\u0627\u06cc\u0645\u060c \u0628\u06cc\u0627\u06cc\u06cc\u062f \u06a9\u062f\u06cc \u0631\u0627 \u0628\u0631\u0627\u06cc \u0627\u0646\u062c\u0627\u0645 \u0628\u0631\u0631\u0633\u06cc\u200c\u0647\u0627\u06cc \u0627\u0646\u0637\u0628\u0627\u0642 \u062f\u0631 \u0633\u0637\u0644 S3 \u0628\u0627 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0627\u0632 \u0686\u0627\u0631\u0686\u0648\u0628 \u0645\u0645\u06cc\u0632\u06cc \u0633\u0641\u0627\u0631\u0634\u06cc \u062e\u0648\u062f \u0627\u0636\u0627\u0641\u0647 \u06a9\u0646\u06cc\u0645.<\/p>\n<ol>\n<li>\u062f\u0631 \u0648\u06cc\u0631\u0627\u06cc\u0634\u06af\u0631 \u06a9\u062f \u062a\u0627\u0628\u0639 Lambda\u060c \u06a9\u062f \u0645\u0648\u062c\u0648\u062f \u0631\u0627 \u0628\u0627 \u06a9\u062f \u0632\u06cc\u0631 \u062c\u0627\u06cc\u06af\u0632\u06cc\u0646 \u06a9\u0646\u06cc\u062f:\n<\/li>\n<\/ol>\n<div class=\"highlight js-code-highlight\">\n<pre class=\"highlight plaintext\"><code>import boto3\nimport json\n\ndef lambda_handler(event, context):\n    # Define the AWS services and resources we'll be working with\n    audit_manager = boto3.client('auditmanager')\n    s3 = boto3.client('s3')\n\n    # Define the audit manager assessment ID and the S3 bucket to audit\n    assessment_id = 'INSERT_ASSESSMENT_ID_HERE'\n    bucket_name=\"INSERT_BUCKET_NAME_HERE\"\n\n    # Get the list of objects in the S3 bucket\n    response = s3.list_objects_v2(Bucket=bucket_name)\n    objects = response['Contents']\n\n    # Define the list of evidence we'll collect for the S3 bucket\n    evidence = []\n\n    # Loop through each object in the S3 bucket and collect evidence\n    for obj in objects:\n        # Define the evidence for each object\n        object_evidence = {\n            'dataSource': 'AWS:S3:Object',\n            'eventName': 's3:ObjectCreated:*',\n            'eventTime': obj['LastModified'].isoformat(),\n            'awsAccountId': context.invoked_function_arn.split(':')[4],\n            'awsRegion': context.invoked_function_arn.split(':')[3],\n            'awsPartition': 'aws',\n            'eventSource': 'aws.s3',\n            'requestParameters': {\n                'bucketName': bucket_name,\n                'key': obj['Key']\n            },\n            'resourceType': 'AWS:S3:Object',\n            'resourceName': f'arn:aws:s3:::{bucket_name}\/{obj[\"Key\"]}',\n            'complianceType': 'COMPLIANT',\n            'title': f'{obj[\"Key\"]} is compliant'\n        }\n\n        # Add the evidence to the list\n        evidence.append(object_evidence)\n\n    # Define the assessment report for the S3 bucket\n    assessment_report = {\n        'evidence': evidence,\n        'assessmentReportDescription': 'Assessment report for S3 bucket compliance',\n        'roles': [\n            {\n                'roleArn': context.invoked_function_arn.split(':')[0] + ':iam::' + context.invoked_function_arn.split(':')[4] + ':role\/Lambda-Audit-Role',\n                'roleType': 'PROCESS_OWNER'\n            }\n        ]\n    }\n\n    # Submit the assessment report to AWS Audit Manager\n    audit_manager.create_assessment_report(\n        assessmentId=assessment_id,\n        assessmentReport=assessment_report\n    )\n\n<\/code><\/pre>\n<div class=\"highlight__panel js-actions-panel\">\n<div class=\"highlight__panel-action js-fullscreen-code-action\">\n    <svg xmlns=\"http:\/\/www.w3.org\/2000\/svg\" width=\"20px\" height=\"20px\" viewbox=\"0 0 24 24\" class=\"highlight-action crayons-icon highlight-action--fullscreen-on\"><title>\u0648\u0627\u0631\u062f \u062d\u0627\u0644\u062a \u062a\u0645\u0627\u0645 \u0635\u0641\u062d\u0647 \u0634\u0648\u06cc\u062f<\/title>\n    <path d=\"M16 3h6v6h-2V5h-4V3zM2 3h6v2H4v4H2V3zm18 16v-4h2v6h-6v-2h4zM4 19h4v2H2v-6h2v4z\"\/>\n<\/svg><\/p>\n<p>    <svg xmlns=\"http:\/\/www.w3.org\/2000\/svg\" width=\"20px\" height=\"20px\" viewbox=\"0 0 24 24\" class=\"highlight-action crayons-icon highlight-action--fullscreen-off\"><title>\u0627\u0632 \u062d\u0627\u0644\u062a \u062a\u0645\u0627\u0645 \u0635\u0641\u062d\u0647 \u062e\u0627\u0631\u062c \u0634\u0648\u06cc\u062f<\/title>\n    <path d=\"M18 7h4v2h-6V3h2v4zM8 9H2V7h4V3h2v6zm10 8v4h-2v-6h6v2h-4zM8 15v6H6v-4H2v-2h6z\"\/>\n<\/svg><\/p>\n<\/div>\n<\/div>\n<\/div>\n<ol>\n<li>\u062c\u0627\u06cc\u200c\u0628\u0627\u0646\u200c\u0647\u0627\u06cc INSERT_ASSESSMENT_ID_HERE \u0648 INSERT_BUCKET_NAME_HERE \u0631\u0627 \u0628\u0627 \u0634\u0646\u0627\u0633\u0647 \u0627\u0631\u0632\u06cc\u0627\u0628\u06cc \u0648\u0627\u0642\u0639\u06cc \u0648 \u0646\u0627\u0645 \u0633\u0637\u0644 S3 \u06a9\u0647 \u0645\u06cc\u200c\u062e\u0648\u0627\u0647\u06cc\u062f \u0628\u0627\u0632\u0631\u0633\u06cc \u06a9\u0646\u06cc\u062f\u060c \u062c\u0627\u06cc\u06af\u0632\u06cc\u0646 \u06a9\u0646\u06cc\u062f.<\/li>\n<li>\u0628\u0631\u0627\u06cc \u0630\u062e\u06cc\u0631\u0647 \u0639\u0645\u0644\u06a9\u0631\u062f Lambda \u0631\u0648\u06cc &#8220;\u0630\u062e\u06cc\u0631\u0647&#8221; \u06a9\u0644\u06cc\u06a9 \u06a9\u0646\u06cc\u062f.<\/li>\n<\/ol>\n<p><strong>\u0631\u0627\u0647 \u0627\u0646\u062f\u0627\u0632\u06cc \u06cc\u06a9 \u0631\u0648\u06cc\u062f\u0627\u062f CloudWatch \u0628\u0631\u0627\u06cc \u0641\u0639\u0627\u0644 \u06a9\u0631\u062f\u0646 \u0639\u0645\u0644\u06a9\u0631\u062f Lambda<\/strong><br \/>\u0627\u06a9\u0646\u0648\u0646 \u06a9\u0647 \u062a\u0627\u0628\u0639 Lambda \u0631\u0627 \u0627\u06cc\u062c\u0627\u062f \u06a9\u0631\u062f\u0647\u200c\u0627\u06cc\u0645\u060c \u0628\u0627\u06cc\u062f \u06cc\u06a9 \u0631\u0648\u06cc\u062f\u0627\u062f CloudWatch \u0631\u0627\u0647\u200c\u0627\u0646\u062f\u0627\u0632\u06cc \u06a9\u0646\u06cc\u0645 \u062a\u0627 \u0639\u0645\u0644\u06a9\u0631\u062f \u0631\u0648\u0632\u0627\u0646\u0647 \u0631\u0627 \u0641\u0639\u0627\u0644 \u06a9\u0646\u062f.<\/p>\n<ol>\n<li>\u06a9\u0646\u0633\u0648\u0644 CloudWatch \u0631\u0627 \u0628\u0627\u0632 \u06a9\u0646\u06cc\u062f.<\/li>\n<li>\u0631\u0648\u06cc &#8220;\u0642\u0648\u0627\u0646\u06cc\u0646&#8221; \u062f\u0631 \u0645\u0646\u0648\u06cc \u0646\u0627\u0648\u0628\u0631\u06cc \u0633\u0645\u062a \u0686\u067e \u06a9\u0644\u06cc\u06a9 \u06a9\u0646\u06cc\u062f.<\/li>\n<li>\u0631\u0648\u06cc &#8220;\u0627\u06cc\u062c\u0627\u062f \u0642\u0627\u0646\u0648\u0646&#8221; \u06a9\u0644\u06cc\u06a9 \u06a9\u0646\u06cc\u062f.<\/li>\n<li>\u062f\u0631 \u0628\u062e\u0634 \u00ab\u0645\u0646\u0628\u0639 \u0631\u0648\u06cc\u062f\u0627\u062f\u00bb\u060c \u00ab\u0632\u0645\u0627\u0646\u200c\u0628\u0646\u062f\u06cc\u00bb \u0631\u0627 \u0627\u0646\u062a\u062e\u0627\u0628 \u06a9\u0631\u062f\u0647 \u0648 \u06af\u0632\u06cc\u0646\u0647 \u00ab\u0646\u0631\u062e \u062b\u0627\u0628\u062a\u00bb \u0631\u0627 \u0627\u0646\u062a\u062e\u0627\u0628 \u06a9\u0646\u06cc\u062f.  \u062f\u0631 \u0642\u0633\u0645\u062a &#8220;\u0633\u0627\u0639\u062a&#8221; &#8220;24&#8221; \u0631\u0627 \u0648\u0627\u0631\u062f \u06a9\u0646\u06cc\u062f.<\/li>\n<li>\u062f\u0631 \u0628\u062e\u0634 \u00ab\u0647\u062f\u0641\u200c\u0647\u0627\u00bb\u060c \u00ab\u062a\u0627\u0628\u0639 \u0644\u0627\u0645\u0628\u062f\u0627\u00bb \u0631\u0627 \u0627\u0646\u062a\u062e\u0627\u0628 \u06a9\u0646\u06cc\u062f \u0648 \u062a\u0627\u0628\u0639 \u0644\u0627\u0645\u0628\u062f\u0627 \u0631\u0627 \u06a9\u0647 \u062f\u0631 \u0642\u0633\u0645\u062a \u0642\u0628\u0644 \u0627\u06cc\u062c\u0627\u062f \u06a9\u0631\u062f\u06cc\u062f \u0627\u0646\u062a\u062e\u0627\u0628 \u06a9\u0646\u06cc\u062f.<\/li>\n<li>\u0631\u0648\u06cc &#8220;\u067e\u06cc\u06a9\u0631\u0628\u0646\u062f\u06cc \u062c\u0632\u0626\u06cc\u0627\u062a&#8221; \u06a9\u0644\u06cc\u06a9 \u06a9\u0646\u06cc\u062f \u0648 \u06cc\u06a9 \u0646\u0627\u0645 \u0628\u0631\u0627\u06cc \u0642\u0627\u0646\u0648\u0646 \u0631\u0648\u06cc\u062f\u0627\u062f CloudWatch\u060c \u0645\u0627\u0646\u0646\u062f &#8220;Daily-S3-Audit&#8221; \u0648\u0627\u0631\u062f \u06a9\u0646\u06cc\u062f.<\/li>\n<li>\u0628\u0631\u0627\u06cc \u0627\u06cc\u062c\u0627\u062f \u0642\u0627\u0646\u0648\u0646 \u0631\u0648\u06cc\u062f\u0627\u062f CloudWatch \u0631\u0648\u06cc \u00ab\u0627\u06cc\u062c\u0627\u062f \u0642\u0627\u0646\u0648\u0646\u00bb \u06a9\u0644\u06cc\u06a9 \u06a9\u0646\u06cc\u062f.<\/li>\n<\/ol>\n<p><strong>\u0646\u062a\u06cc\u062c\u0647<\/strong><br \/>\u062f\u0631 \u0627\u06cc\u0646 \u0645\u0642\u0627\u0644\u0647\u060c \u0646\u062d\u0648\u0647 \u062e\u0648\u062f\u06a9\u0627\u0631\u0633\u0627\u0632\u06cc \u0628\u0631\u0631\u0633\u06cc\u200c\u0647\u0627\u06cc \u0627\u0646\u0637\u0628\u0627\u0642 \u0628\u0627 AWS Audit Manager \u0631\u0627 \u0628\u0627 \u0627\u0633\u062a\u0641\u0627\u062f\u0647 \u0627\u0632 \u06cc\u06a9 \u062a\u0627\u0628\u0639 Lambda \u0648 \u06cc\u06a9 \u0631\u0648\u06cc\u062f\u0627\u062f CloudWatch \u0628\u0631\u0631\u0633\u06cc \u06a9\u0631\u062f\u06cc\u0645.  \u0645\u0627 \u0628\u0627 \u0628\u062d\u062b \u062f\u0631 \u0645\u0648\u0631\u062f \u0627\u0647\u0645\u06cc\u062a \u0627\u0646\u0637\u0628\u0627\u0642 \u062f\u0631 \u062f\u0646\u06cc\u0627\u06cc \u062a\u062c\u0627\u0631\u062a \u0627\u0645\u0631\u0648\u0632 \u0648 \u0627\u06cc\u0646\u06a9\u0647 \u0686\u06af\u0648\u0646\u0647 \u0645\u062f\u06cc\u0631 \u062d\u0633\u0627\u0628\u0631\u0633\u06cc AWS \u0645\u06cc \u062a\u0648\u0627\u0646\u062f \u0628\u0647 \u062e\u0648\u062f\u06a9\u0627\u0631\u0633\u0627\u0632\u06cc \u0628\u0631\u0631\u0633\u06cc \u0647\u0627\u06cc \u0627\u0646\u0637\u0628\u0627\u0642 \u06a9\u0645\u06a9 \u06a9\u0646\u062f\u060c \u0634\u0631\u0648\u0639 \u06a9\u0631\u062f\u06cc\u0645.<\/p>\n<p>\u062f\u0631 \u0645\u0631\u062d\u0644\u0647 \u0628\u0639\u062f\u060c \u0645\u0627 \u0628\u0647 \u0645\u0631\u0627\u062d\u0644 \u0645\u0631\u0628\u0648\u0637 \u0628\u0647 \u0631\u0627\u0647\u200c\u0627\u0646\u062f\u0627\u0632\u06cc \u062d\u0633\u0627\u0628\u0631\u0633\u06cc \u062f\u0631 AWS Audit Manager \u0648 \u0646\u062d\u0648\u0647 \u0627\u06cc\u062c\u0627\u062f \u06cc\u06a9 \u062a\u0627\u0628\u0639 Lambda \u0628\u0631\u0627\u06cc \u062c\u0645\u0639\u200c\u0622\u0648\u0631\u06cc \u0634\u0648\u0627\u0647\u062f \u0648 \u0627\u0631\u0627\u0626\u0647 \u06af\u0632\u0627\u0631\u0634 \u0627\u0631\u0632\u06cc\u0627\u0628\u06cc \u0628\u0647 \u0645\u062f\u06cc\u0631 \u062d\u0633\u0627\u0628\u0631\u0633\u06cc \u0646\u06af\u0627\u0647 \u06a9\u0631\u062f\u06cc\u0645.<\/p>\n<p>\u0645\u0627 \u0642\u0637\u0639\u0627\u062a \u06a9\u062f \u0631\u0627 \u0627\u0631\u0627\u0626\u0647 \u06a9\u0631\u062f\u06cc\u0645 \u0648 \u0646\u062d\u0648\u0647 \u062a\u0646\u0638\u06cc\u0645 \u0646\u0642\u0634 IAM\u060c \u062e\u0637 \u0645\u0634\u06cc \u0648 \u0645\u062c\u0648\u0632\u0647\u0627\u06cc \u0645\u0648\u0631\u062f \u0646\u06cc\u0627\u0632 \u0628\u0631\u0627\u06cc \u0627\u062c\u0631\u0627\u06cc \u062a\u0627\u0628\u0639 Lambda \u0631\u0627 \u062a\u0648\u0636\u06cc\u062d \u062f\u0627\u062f\u06cc\u0645.<\/p>\n<p>\u062f\u0631 \u0646\u0647\u0627\u06cc\u062a\u060c \u0646\u062d\u0648\u0647 \u062a\u0646\u0638\u06cc\u0645 \u06cc\u06a9 \u0631\u0648\u06cc\u062f\u0627\u062f CloudWatch \u0628\u0631\u0627\u06cc \u0641\u0639\u0627\u0644 \u06a9\u0631\u062f\u0646 \u0639\u0645\u0644\u06a9\u0631\u062f Lambda \u0631\u0627 \u0628\u0647 \u0635\u0648\u0631\u062a \u0631\u0648\u0632\u0627\u0646\u0647 \u0645\u0648\u0631\u062f \u0628\u062d\u062b \u0642\u0631\u0627\u0631 \u062f\u0627\u062f\u06cc\u0645.<\/p>\n<p>\u0628\u0627 \u062e\u0648\u062f\u06a9\u0627\u0631\u0633\u0627\u0632\u06cc \u0628\u0631\u0631\u0633\u06cc\u200c\u0647\u0627\u06cc \u0627\u0646\u0637\u0628\u0627\u0642 \u0628\u0627 AWS Audit Manager\u060c \u06a9\u0633\u0628\u200c\u0648\u06a9\u0627\u0631\u0647\u0627 \u0645\u06cc\u200c\u062a\u0648\u0627\u0646\u0646\u062f \u062e\u0637\u0631 \u0639\u062f\u0645 \u0627\u0646\u0637\u0628\u0627\u0642 \u0631\u0627 \u06a9\u0627\u0647\u0634 \u062f\u0647\u0646\u062f \u0648 \u0627\u0632 \u062c\u0631\u06cc\u0645\u0647\u200c\u0647\u0627 \u0648 \u062c\u0631\u06cc\u0645\u0647\u200c\u0647\u0627\u06cc \u067e\u0631\u0647\u0632\u06cc\u0646\u0647 \u0627\u062c\u062a\u0646\u0627\u0628 \u06a9\u0646\u0646\u062f.  \u0628\u0627 \u06a9\u0645\u06a9 \u0645\u062c\u0645\u0648\u0639\u0647 \u0627\u0628\u0632\u0627\u0631\u0647\u0627 \u0648 \u062e\u062f\u0645\u0627\u062a \u0642\u062f\u0631\u062a\u0645\u0646\u062f AWS\u060c \u06a9\u0633\u0628\u200c\u0648\u06a9\u0627\u0631\u0647\u0627 \u0645\u06cc\u200c\u062a\u0648\u0627\u0646\u0646\u062f \u0627\u0637\u0645\u06cc\u0646\u0627\u0646 \u062d\u0627\u0635\u0644 \u06a9\u0646\u0646\u062f \u06a9\u0647 \u0628\u0627 \u0645\u0642\u0631\u0631\u0627\u062a \u0648 \u0627\u0633\u062a\u0627\u0646\u062f\u0627\u0631\u062f\u0647\u0627\u06cc \u0635\u0646\u0639\u062a \u0645\u0637\u0627\u0628\u0642\u062a \u062f\u0627\u0631\u0646\u062f \u0648 \u0628\u0647 \u0622\u0646\u0647\u0627 \u0622\u0631\u0627\u0645\u0634 \u062e\u0627\u0637\u0631\u06cc \u0645\u06cc\u200c\u062f\u0647\u062f \u06a9\u0647 \u0628\u0631\u0627\u06cc \u062a\u0645\u0631\u06a9\u0632 \u0628\u0631 \u0627\u0647\u062f\u0627\u0641 \u0627\u0635\u0644\u06cc \u06a9\u0633\u0628\u200c\u0648\u06a9\u0627\u0631\u0634\u0627\u0646 \u0646\u06cc\u0627\u0632 \u062f\u0627\u0631\u0646\u062f.<\/p>\n<p><strong>\u0645\u0646\u0627\u0628\u0639<\/strong><\/p>\n<ol>\n<li>\u0645\u0633\u062a\u0646\u062f\u0627\u062a \u0631\u0633\u0645\u06cc AWS Audit Manager: https:\/\/aws.amazon.com\/audit-manager\/\n<\/li>\n<li>\u0627\u0633\u0646\u0627\u062f \u0631\u0633\u0645\u06cc AWS Lambda: https:\/\/aws.amazon.com\/lambda\/ <\/li>\n<li>\u0645\u0633\u062a\u0646\u062f\u0627\u062a \u0631\u0633\u0645\u06cc AWS CloudWatch: https:\/\/aws.amazon.com\/cloudwatch\/\n<\/li>\n<li>\u0627\u0633\u0646\u0627\u062f \u0631\u0633\u0645\u06cc AWS Identity and Access Management (IAM): https:\/\/aws.amazon.com\/iam\/\n<\/li>\n<\/ol><\/div>\n","protected":false},"excerpt":{"rendered":"<p>AWS Audit Manager \u0633\u0631\u0648\u06cc\u0633\u06cc \u0627\u0633\u062a \u06a9\u0647 \u0641\u0631\u0622\u06cc\u0646\u062f \u0645\u0645\u06cc\u0632\u06cc \u0648 \u0645\u062f\u06cc\u0631\u06cc\u062a \u0686\u0627\u0631\u0686\u0648\u0628 \u0647\u0627\u06cc \u0627\u0646\u0637\u0628\u0627\u0642 \u062f\u0631 AWS \u0631\u0627 \u0633\u0627\u062f\u0647 \u0645\u06cc \u06a9\u0646\u062f. \u0686\u0627\u0631\u0686\u0648\u0628 \u0647\u0627\u06cc \u062d\u0633\u0627\u0628\u0631\u0633\u06cc \u0627\u0632 \u067e\u06cc\u0634 \u0633\u0627\u062e\u062a\u0647 \u0648 \u0642\u0627\u0628\u0644 \u062a\u0646\u0638\u06cc\u0645 \u0631\u0627 \u0628\u0631\u0627\u06cc \u06a9\u0645\u06a9 \u0628\u0647 \u0627\u0631\u0632\u06cc\u0627\u0628\u06cc \u0627\u0646\u0637\u0628\u0627\u0642 \u0633\u0627\u0632\u0645\u0627\u0646 \u062e\u0648\u062f \u0628\u0627 \u0627\u0633\u062a\u0627\u0646\u062f\u0627\u0631\u062f\u0647\u0627\u06cc \u0635\u0646\u0639\u062a\u06cc \u0648 \u0646\u0638\u0627\u0631\u062a\u06cc\u060c \u0645\u0627\u0646\u0646\u062f SOC 2\u060c HIPAA\u060c \u0648 PCI DSS \u0627\u0631\u0627\u0626\u0647 \u0645\u06cc \u062f\u0647\u062f. AWS Audit Manager \u0647\u0645\u0686\u0646\u06cc\u0646 &hellip;<\/p>\n","protected":false},"author":2,"featured_media":19811,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"","fifu_image_alt":"","footnotes":""},"categories":[339],"tags":[],"class_list":["post-19810","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-dev"],"_links":{"self":[{"href":"https:\/\/nabfollower.com\/blog\/wp-json\/wp\/v2\/posts\/19810","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/nabfollower.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/nabfollower.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/nabfollower.com\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/nabfollower.com\/blog\/wp-json\/wp\/v2\/comments?post=19810"}],"version-history":[{"count":0,"href":"https:\/\/nabfollower.com\/blog\/wp-json\/wp\/v2\/posts\/19810\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/nabfollower.com\/blog\/wp-json\/wp\/v2\/media\/19811"}],"wp:attachment":[{"href":"https:\/\/nabfollower.com\/blog\/wp-json\/wp\/v2\/media?parent=19810"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/nabfollower.com\/blog\/wp-json\/wp\/v2\/categories?post=19810"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/nabfollower.com\/blog\/wp-json\/wp\/v2\/tags?post=19810"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}