CIS Control 6

Ensure CloudTrail log file validation is enabled
Profile Applicability: Level 2 Description:  CloudTrail log file validation creates a digitally signed digest file containing a hash of each log that Clou...
Wed, 6 Apr, 2022 at 10:35 PM
Ensure CloudTrail logs are encrypted at rest using KMS CMKs
Profile Applicability: Level 2 Description:  AWS CloudTrail is a web service that records AWS API calls for an account and makes those logs available t...
Tue, 22 Mar, 2022 at 3:10 AM
Ensure rotation for customer created CMKs is enabled
Profile Applicability: Level 2 Description: AWS Key Management Service (KMS) allows customers to rotate backup keys. The backup key is the key informat...
Mon, 13 Mar, 2023 at 7:03 AM