HIGH
Source
Trivy/CSPM
CSPM ID
sns-topic-encrypted
ID
AVD-AWS-0095

Unencrypted SNS topic.

Topics should be encrypted to protect their contents.

Impact

Follow the appropriate remediation steps below to resolve the issue.

Turn on SNS Topic encryption

1
2
3
4
5
6
Resources:
  GoodTopic:
    Type: AWS::SQS::Topic
    Properties:
      KmsMasterKeyId: some-key
      TopicName: blah

Turn on SNS Topic encryption

1
2
3
resource "aws_sns_topic" "good_example" {
  kms_master_key_id = "/blah"
}