Overview
Lab details
- This lab provides a step-by-step walkthrough on accessing and downloading security and compliance reports within AWS Artifact.
- Duration: 1 hour
- AWS Region: US East (N. Virginia) us-east-1.
Introduction
What is AWS Artifact agreements?
- AWS Artifact Agreements constitute a cornerstone of the contractual relationship between AWS (Amazon Web Services) and its customers. These agreements encompass a variety of legal documents and terms that define the rights, responsibilities, and obligations of both parties concerning the use of AWS services.
- As organizations increasingly rely on cloud computing services to drive innovation, enhance operational efficiency, and scale their infrastructure, understanding and complying with AWS Artifact Agreements is paramount. These agreements provide the legal framework that governs the usage of AWS services and establishes the terms under which customers can leverage AWS’s cloud offerings securely and effectively.
What is AWS Artifact Report?
- AWS Artifact Reports serve as essential documents that provide valuable insights into the security and compliance status of your AWS (Amazon Web Services) environment. These reports are accessible through the AWS Artifact platform, offering users a centralized hub for managing and obtaining critical documentation related to security, privacy, and regulatory compliance
- As organizations increasingly migrate their operations to the cloud, ensuring the security and compliance of cloud-based infrastructure becomes paramount. AWS Artifact Reports play a vital role in this context by providing comprehensive documentation that demonstrates adherence to industry standards, regulatory requirements, and best practices for information security.
Prerequisite
- Make sure to have Laptop or Desktop Computer
- Web Browser
- PDF Viewer:
- Adobe Acrobat Reader or Built-in PDF Viewer
Architecture diagram

Task details
- Sign in to AWS Management Console
- Downloading Artifact report and agreements.
- Reading the terms and conditions on the agreement
- Deleting AWS resource
Launching the lab environment
- To Launch The Project Environment, Click On The Launch lab Button.
- Please Wait Until The Cloud Environment Is Provisioned. It Will Take Less Than A Minute To Provision.
- Once The Project Is Started, You Will Be Provided With IAM User Name, Password, Access Key, And Secret Access Key.
You can only start one Project at any given time
Lab guide
Lab steps
Task 1: Sign in to AWS Management Console
- Click On The Open console Button, And You Will Get Redirected To AWS Console In A New Browser Tab.
-
On The AWS Sign-In Page,
- Leave The Account ID As Default. Never Edit/Remove The 12 Digit Account ID Present In The AWS Console. Otherwise, You Cannot Proceed With The Lab.
- Now Copy Your User Name And Password In The Lab Console To The IAM Username And Password In AWS Console And Click On The Sign In Button.
- Once Signed In To The AWS Management Console, Make The Default AWS Region As US East (N. Virginia) Us-East-1.
Task 2: Creating AWS Artifact report
- In the “Find Services” search bar, type “AWS Artifact” and select it from the dropdown.
- You’ll be redirected to the AWS Artifact dashboard.
- On the Artifact dashboard see in the left-hand menu and click on “Reports” to view the AWS artifact reports

Task 3: Download and Review the PCI DSS Attestation of Compliance (AOC)
- In the AWS Artifact console, navigate to the “Reports” section.
- Locate the “PCI DSS Attestation of Compliance (AOC)” report in the list.
- Select the desired version of the report and click “Download Report” to download the document.

- Open the downloaded report and review its contents. Pay attention to the sections that describe AWS’ compliance with the PCI DSS standard and the scope of the assessment.

Task 4: Download and review the ISO 27001 certificates
- Search “ISO 27001:2022 Certification” in the list
- Select the desired version of the certificate and click “Download report” to download the document.

- Open the downloaded certificate and review its contents. Verify the scope and validity of the certificate, as well as the certification body that issued it.

Task 5: Download and review the SOC Continued Operations Letter
- Search “SOC Continued Operations Letter” in the list of reports.
- Click the radio button and click on download report
- It will pop up a page and read all the terms and conditions and then click the checkbox and Accept terms to download report.


- Open the downloaded letter document (typically in PDF format).
- Introduction and purpose of the letter
- Time period covered by the letter
- Auditor’s assessment of AWS’s continued operations and control environment
- Any changes or updates to AWS’s control environment or services covered
Task 6: Download and review the AWS Business Associate Addendum
- Navigate to the “Agreements” section on the left side of the AWS Artifact console.
- Search BAA “Business Associate Addendum (BAA)” in the list of agreements.
- Click on the BAA name to see more details.
- Click “Download” to save the BAA document.
- Before that review the terms and conditions
- Artifact Confidential Information
- Exclusions
- Use of Artifact Confidential Information
- Company Personnel
- Disclosures to Governmental Entities
- Ownership of Artifact Confidential Information
- Notice of Unauthorized Use
- Return of Artifact Confidential Information
- Injunctive Relief
- Term; Termination
- Scope
- Miscellaneous
- Service Auditors

- And the click on the checkbox : I have read and agree to the all the terms of the NDA And then click on Accept NDA and download.


- And the click on Accept agreement.

- Check the checkbox and click on accept agreement.

- And then status will be changed to active status.

Task 7: Validation Test
- Once the lab steps are completed, please click on the Check my work button on the Right side panel.
- This will validate the resources in the AWS account and displays whether you have completed this lab successfully or not.
- Sample output :

Completion and conclusion
- You Have Successfully logged into AWS console.
- You Have Successfully downloaded artifacts reports.
- You Have Successfully downloaded artifacts agreement.
- You Have Successfully read the terms and condition for both report and agreements.
End lab
- Sign Out Of AWS Account.
- You Have Successfully Completed The Lab.
- Once You Have Completed The Steps, Click On End lab in the IP Lab Portal And Wait Till The Process Gets Completed.
What gets checked
When you press Check my work, the platform verifies each of these:- Login to AWS Management Console — Check whether the user has logged in to the AWS Management Console.