critical
aws
efs
EFS Mounted Without Encryption at Rest
EFS file systems should be configured to encrypt data at rest to create a permissions barrier to accessing and copying the data, thereby reducing the impact of leaked raw data.