Amazon Redshift
Connect Amazon Redshift to Iru Compliance Automation to collect cluster configuration, snapshot, and parameter metadata for provisioned clusters.
Warehouse encryption, log destination, and query attribution are the three questions that come up for Redshift. Iru connects and reads cluster encryption settings, logging destinations, and permissions directly to answer all three.
Key Capabilities
- Verify the cluster is encrypted and network-restricted
- Confirm user activity logging is enabled and shipped to a controlled destination
- Check that analytical access follows least privilege
Evidence Collected
- Cluster encryption configuration
- User activity logging settings and S3 destinations
- Subnet and routing layout
- Workload management rules
- Warehouse permissions and CloudTrail control plane changes