AWS New Checks

Ensure EC2 Auto Scaling Groups Use EC2 Launch Templates
Profile Applicability Level 2 Description EC2 Launch Templates provide a more powerful and flexible way to configure Amazon EC2 Auto Scaling Groups com...
Mon, 24 Mar, 2025 at 8:54 AM
Ensure Capacity Rebalancing Is Enabled for EC2 Auto Scaling Groups
Profile Applicability Level 2 Description Capacity Rebalancing is a feature in Amazon EC2 Auto Scaling that proactively replaces Spot Instances at risk...
Mon, 24 Mar, 2025 at 9:01 AM
Ensure Inspector2 active findings exist.
Profile Applicability: Level 1 Description: Amazon Inspector 2 is an automated security assessment service that continuously monitors and assesses AW...
Fri, 23 May, 2025 at 4:33 AM
Ensure Direct Connect connections are redundant.
Profile Applicability: Level 1 Description: AWS Direct Connect is a service that allows you to establish a dedicated network connection from your pre...
Mon, 24 Mar, 2025 at 8:21 PM
Ensure Direct Connect virtual interface(s) are providing redundant connections.
Profile Applicability: Level 1 Description: AWS Direct Connect allows you to establish a dedicated network connection from your premises to AWS. A vi...
Mon, 24 Mar, 2025 at 8:36 PM
Ensure ACM Certificates use a secure key algorithm.
Profile Applicability: Level 1 Description: AWS Certificate Manager (ACM) is a service that helps you provision, manage, and deploy SSL/TLS certifica...
Fri, 23 May, 2025 at 4:28 AM
Ensure GuardDuty RDS Protection is enabled.
Profile Applicability: Level 1 Description: AWS GuardDuty is a threat detection service that continuously monitors for malicious activity and unautho...
Fri, 23 May, 2025 at 4:25 AM
Ensure that GuardDuty Malware Protection for EC2 is enabled.
Profile Applicability: Level 1 Description: Amazon GuardDuty is a threat detection service that continuously monitors for malicious activity and unau...
Mon, 24 Mar, 2025 at 9:31 PM
Ensure There are High severity GuardDuty findings.
Profile Applicability: Level 1 Description: Amazon GuardDuty is a threat detection service that continuously monitors your AWS environment for malici...
Fri, 23 May, 2025 at 4:22 AM
Ensure GuardDuty is centrally managed.
Profile Applicability: Level 1 Description: Amazon GuardDuty is a threat detection service that continuously monitors your AWS environment for malici...
Fri, 23 May, 2025 at 4:20 AM