Select your cookie preferences

We use essential cookies and similar tools that are necessary to provide our site and services. We use performance cookies to collect anonymous statistics, so we can understand how customers use our site and make improvements. Essential cookies cannot be deactivated, but you can choose “Customize” or “Decline” to decline performance cookies.

If you agree, AWS and approved third parties will also use cookies to provide useful site features, remember your preferences, and display relevant content, including relevant advertising. To accept or decline all non-essential cookies, choose “Accept” or “Decline.” To make more detailed choices, choose “Customize.”

StandardsControl - AWS Security Hub

StandardsControl

Details for an individual security standard control.

Contents

ControlId

The identifier of the security standard control.

Type: String

Pattern: .*\S.*

Required: No

ControlStatus

The current status of the security standard control. Indicates whether the control is enabled or disabled. Security Hub does not check against disabled controls.

Type: String

Valid Values: ENABLED | DISABLED

Required: No

ControlStatusUpdatedAt

The date and time that the status of the security standard control was most recently updated.

Type: Timestamp

Required: No

Description

The longer description of the security standard control. Provides information about what the control is checking for.

Type: String

Pattern: .*\S.*

Required: No

DisabledReason

The reason provided for the most recent change in status for the control.

Type: String

Pattern: .*\S.*

Required: No

RelatedRequirements

The list of requirements that are related to this control.

Type: Array of strings

Pattern: .*\S.*

Required: No

RemediationUrl

A link to remediation information for the control in the Security Hub user documentation.

Type: String

Pattern: .*\S.*

Required: No

SeverityRating

The severity of findings generated from this security standard control.

The finding severity is based on an assessment of how easy it would be to compromise AWS resources if the issue is detected.

Type: String

Valid Values: LOW | MEDIUM | HIGH | CRITICAL

Required: No

StandardsControlArn

The ARN of the security standard control.

Type: String

Pattern: .*\S.*

Required: No

Title

The title of the security standard control.

Type: String

Pattern: .*\S.*

Required: No

See Also

For more information about using this API in one of the language-specific AWS SDKs, see the following:

PrivacySite termsCookie preferences
© 2025, Amazon Web Services, Inc. or its affiliates. All rights reserved.