Policy - AWS Security Hub CSPM
Services or capabilities described in AWS documentation might vary by Region. To see the differences applicable to the AWS European Sovereign Cloud Region, see the AWS European Sovereign Cloud User Guide.

Policy

An object that defines how AWS Security Hub CSPM is configured. It includes whether Security Hub CSPM is enabled or disabled, a list of enabled security standards, a list of enabled or disabled security controls, and a list of custom parameter values for specified controls. If you provide a list of security controls that are enabled in the configuration policy, Security Hub CSPM disables all other controls (including newly released controls). If you provide a list of security controls that are disabled in the configuration policy, Security Hub CSPM enables all other controls (including newly released controls).

Contents

Important

This data type is a UNION, so only one of the following members can be specified when used or returned.

SecurityHub

The AWS service that the configuration policy applies to.

Type: SecurityHubPolicy object

Required: No

See Also

For more information about using this API in one of the language-specific AWS SDKs, see the following: