Amazon Macie logo

Amazon Macie

Amazon Macie is a data security service that discovers sensitive data by using machine learning and pattern matching, provides visibility into data security risks, and enables automated protection against those risks. Macie automates the discovery of sensitive data, such as personally identifiable information (PII) and financial data, to provide you with a better understanding of the data that your organization stores in Amazon S3.

1 APIs 1 Capabilities 7 Features
AWSData SecuritySensitive DataPrivacyComplianceMachine LearningS3

APIs

Amazon Macie API

The Amazon Macie API provides programmatic access to create and manage the resources, data, and activities for discovering, classifying, and protecting sensitive data stored in ...

Capabilities

Amazon Macie - Data Security Operations

Workflow capability for security and compliance teams to discover sensitive data, investigate findings, and manage data security posture in Amazon S3 using Amazon Macie.

Run with Naftiko

Features

Automated Sensitive Data Discovery

Automatically discovers and classifies sensitive data in S3 using ML and pattern matching.

PII and Financial Data Detection

Detects personally identifiable information (PII), financial data, and credentials in S3 objects.

Custom Data Identifiers

Create custom regex patterns to detect organization-specific sensitive data types.

Data Security Findings

Generates detailed findings with severity ratings for all detected sensitive data exposures.

S3 Bucket Security Posture

Provides visibility into bucket configurations, encryption status, and public access settings.

Multi-Account Support

Manage Macie across multiple AWS accounts from a central administrator account.

Allow Lists

Define allow lists to suppress false positives for known acceptable sensitive data patterns.

Use Cases

GDPR and Privacy Compliance

Discover and inventory personal data across S3 to support GDPR data mapping and compliance reporting.

PCI-DSS Compliance

Detect credit card numbers and financial data stored in S3 to maintain PCI-DSS compliance.

Data Loss Prevention

Identify sensitive data stored in public or insufficiently protected S3 buckets.

Security Incident Response

Quickly determine if sensitive data was exposed in an S3 bucket involved in a security incident.

Data Governance

Build a data inventory and understand where sensitive data lives across the organization.

Integrations

Amazon S3

Scans S3 buckets to discover and classify sensitive data objects.

AWS Security Hub

Sends findings to Security Hub for centralized security posture management.

Amazon EventBridge

Publishes findings events to EventBridge for automated remediation workflows.

AWS Organizations

Integrates with Organizations for multi-account sensitive data discovery.

Amazon CloudWatch

Publishes metrics and logs to CloudWatch for monitoring and alerting.

Semantic Vocabularies

Amazon Macie Context

301 classes · 331 properties

JSON-LD

API Governance Rules

Amazon Macie API Rules

18 rules · 7 errors 7 warnings 4 info

SPECTRAL

Resources

🌐
Portal
Portal
🔗
Documentation
Documentation
📜
TermsOfService
TermsOfService
📜
PrivacyPolicy
PrivacyPolicy
💬
Support
Support
📰
Blog
Blog
👥
GitHubOrganization
GitHubOrganization
🌐
Console
Console
📝
SignUp
SignUp
🔗
Login
Login
🟢
StatusPage
StatusPage
🔗
Contact
Contact
🔗
SpectralRules
SpectralRules
🔗
Vocabulary
Vocabulary
🔗
NaftikoCapability
NaftikoCapability