Compliance Reports-deprecated

Compliance Report

Bridgecrew supports export of Compliance Reports in PDF files.

  • The first part of the report lists each of the standard's relevant policies/requirements followed by a mapping of the related Bridgecrew Incidents and their status.
  • The second part of the report lists policies that have been Suppressed, grouped according to the standard's requirements.
  • The third part of the report lists policies that have Failed, grouped according to the standard's requirements.

Example of the first part of a HIPAA report:

536

Reports can be based on a range of industry standards, including HIPAA, PCI, SOC2 and others, depending on the platform.

Report TypeAvailable for:
NIST 800-53AWS, GCP
ISO27001AWS, GCP
HIPAAAWS, GCP
SOC2AWS, GCP
PCI-DSS v3.2AWS, GCP
CIS AWS v1.2AWS
CIS GCP v1.1GCP
CIS KUBERNETES v1.5KUBERNETES

To export a report:

  1. On the Incidents page, press the down arrow at the top of the Incident queue.

📘

Note

The report relates to all the Incidents currently in the queue, not a specific Incident.

971
  1. Then select an Account and an Industry standard for the type of report.
1256
  1. Press PDF Export.
    The report will be downloaded in accordance with your browser download settings.

The cover of a PCI report generated by Bridgecrew:

369

📘

Note

CSV Export generates a list of Incidents (not an Industry report) that includes:

  • Category
  • Violation ID
  • Title
  • Resource
  • URL of the specific Incident

Sample of a file exported in CSV file:

1284