AWS New Checks

Ensure CloudWatch Log Groups are Protected by AWS KMS
Profile Applicability: Level 1 Description: AWS CloudWatch Log Groups can be configured to use AWS Key Management Service (KMS) to protect the logs s...
Mon, 24 Mar, 2025 at 3:35 AM
Ensure ECS clusters should use Container Insights
Profile Applicability: Level 1 Description: Amazon ECS integrates with Amazon CloudWatch to provide Container Insights for monitoring and troubleshoo...
Fri, 23 May, 2025 at 5:19 AM
Ensure AWS WAF Classic Global Rules Have at Least One Condition
Profile Applicability Level 2 Description A rule in AWS WAF Classic specifies criteria, called conditions, to filter web requests, such as IP match con...
Mon, 24 Mar, 2025 at 3:40 AM
Ensure AWS WAF Classic Regional WebACL Has at Least One Rule or Rule Group
Profile Applicability Level 2 Description A Web Access Control List (WebACL) in AWS WAF Classic is used to define rules that filter and control web tra...
Mon, 24 Mar, 2025 at 3:48 AM
Ensure Authentication Mechanism Is Enabled for DMS Endpoints for MongoDB
Profile Applicability Level 2 Description Authentication mechanisms for MongoDB endpoints in AWS Database Migration Service (DMS) ensure that only auth...
Mon, 24 Mar, 2025 at 3:55 AM
Ensure CloudWatch Alarms Have Actions Enabled
Profile Applicability:  Level 1 Description: AWS CloudWatch Alarms monitor specific metrics and can trigger actions when these metrics reach defined thres...
Mon, 24 Mar, 2025 at 3:57 AM
Ensure ECS services should not assign public IPs automatically
Profile Applicability: Level 1 Description: Amazon ECS (Elastic Container Service) allows you to run containerized applications on clusters. When ECS...
Fri, 23 May, 2025 at 5:17 AM
Ensure SSL Mode Is Enabled in DMS Endpoints
Profile Applicability Level 2 Description Enabling SSL (Secure Sockets Layer) mode for AWS Database Migration Service (DMS) endpoints ensures that all ...
Mon, 24 Mar, 2025 at 4:02 AM
Ensure Multi-AZ Is Enabled for DMS Instances
Profile Applicability  Level 2 Description Enabling Multi-AZ for AWS Database Migration Service (DMS) instances ensures high availability and fault tol...
Mon, 24 Mar, 2025 at 4:10 AM
Ensure CloudFront Distributions Are Not Using Deprecated SSL Protocols
Profile Applicability:  Level 2 Description Amazon CloudFront is a web service that speeds up the distribution of your static and dynamic web content. Us...
Mon, 24 Mar, 2025 at 4:12 AM