AWS_Lambda_6

Lambda Functions with Admin Privileges are not created

Description

Determine the specific permissions needed by your Lambda Functions, and then craft IAM policies for these permissions only, instead of full administrative privileges.There should not be any policies that grant blanket permissions (‘*’) to resources. It is recommended and considered a standard security best practice to grant least privileges that is, granting only the permissions required to perform a task.

Remediation

For each Lambda Function that failed this rule, navigate to Policies on the IAM console. Search for the policy that failed the rule. Rework the permissions in the policy to grant positive permissions to specific AWS services or actions instead of blanket permissions using ‘*’.

Service

Lambda

Severity

Low

Compliance

Mapping

We are now live on AWS Marketplace.
The integrated view of your cloud infrastructure is now easier than ever!