CIS Control 2

2.2.4 Ensure Multi-AZ deployments are used for enhanced availability in Amazon RDS
Profile Applicability: Level 1 Description: Amazon RDS Multi-AZ deployments ensure high availability and durability by automatically replicating the ...
Fri, 14 Feb, 2025 at 5:25 AM
2.2.3 Ensure that RDS instances are not publicly accessible
Profile Applicability: Level 1 Description: Amazon RDS should not be publicly accessible to prevent unauthorized access to sensitive data. A publicly acc...
Fri, 14 Feb, 2025 at 7:39 AM
2.2.2 Ensure the Auto Minor Version Upgrade feature is enabled for RDS instances
Profile Applicability: Level 1 Description: The Auto Minor Version Upgrade feature ensures that RDS instances automatically receive minor database eng...
Fri, 14 Feb, 2025 at 7:54 AM
2.2.1 Ensure that encryption-at-rest is enabled for RDS instances
Profile Applicability: Level 1 Description: Amazon RDS Encryption helps protect sensitive data by encrypting databases, backups, and snapshots using the ...
Sun, 16 Feb, 2025 at 11:26 PM
2.1.4 Ensure that S3 is configured with 'Block Public Access' enabled
Profile Applicability: Level 1 Description: Amazon S3 provides Block Public Access settings at both: 1. Bucket level (Prevents individual S3 buckets from...
Sun, 16 Feb, 2025 at 11:36 PM
2.1.3 Ensure all data in Amazon S3 has been discovered, classified, and secured when necessary
Profile Applicability: Level 2 Description: Amazon S3 can store sensitive or regulated data, which should be: Discovered (Identified automatically) Moni...
Sun, 16 Feb, 2025 at 11:45 PM
2.1.2 Ensure MFA Delete is enabled on S3 buckets
Profile Applicability: Level 2 Description: Amazon S3 MFA Delete is a security feature that requires users to provide two forms of authentication when: ...
Sun, 16 Feb, 2025 at 11:56 PM
2.1.1 Ensure S3 Bucket Policy is set to deny HTTP requests
Profile Applicability: Level 2 Description: By default, Amazon S3 allows both HTTP and HTTPS requests for accessing objects. This control ensures that...
Mon, 17 Feb, 2025 at 3:41 AM
2.3.1 Ensure Encryption is Enabled for EFS File Systems (Automated)
Profile Applicability: Level 1 Description: Amazon Elastic File System (EFS) should be encrypted at rest using AWS Key Management Service (KMS) to protect...
Mon, 17 Feb, 2025 at 11:40 PM