AWS New Checks

Ensure EC2 Auto Scaling Groups Use EC2 Launch Templates
Profile Applicability Level 2 Description EC2 Launch Templates provide a more powerful and flexible way to configure Amazon EC2 Auto Scaling Groups com...
Mon, 24 Mar, 2025 at 8:54 AM
Ensure Capacity Rebalancing Is Enabled for EC2 Auto Scaling Groups
Profile Applicability Level 2 Description Capacity Rebalancing is a feature in Amazon EC2 Auto Scaling that proactively replaces Spot Instances at risk...
Mon, 24 Mar, 2025 at 9:01 AM
Ensure Inspector2 active findings exist.
Profile Applicability: Level 1 Description: Amazon Inspector 2 is an automated security assessment service that continuously monitors and assesses AW...
Thu, 11 Sep, 2025 at 3:08 AM
Ensure Direct Connect connections are redundant.
Profile Applicability: Level 1 Description: AWS Direct Connect is a service that allows you to establish a dedicated network connection from your pre...
Thu, 11 Sep, 2025 at 3:15 AM
Ensure Direct Connect virtual interface(s) are providing redundant connections.
Profile Applicability: Level 1 Description: AWS Direct Connect allows you to establish a dedicated network connection from your premises to AWS. A vi...
Thu, 11 Sep, 2025 at 3:20 AM
Ensure ACM Certificates use a secure key algorithm.
Profile Applicability: Level 1 Description: AWS Certificate Manager (ACM) is a service that helps you provision, manage, and deploy SSL/TLS certifica...
Tue, 9 Sep, 2025 at 2:35 AM
Ensure GuardDuty RDS Protection is enabled.
Profile Applicability: Level 1 Description: AWS GuardDuty is a threat detection service that continuously monitors for malicious activity and unautho...
Tue, 9 Sep, 2025 at 2:41 AM
Ensure that GuardDuty Malware Protection for EC2 is enabled.
Profile Applicability: Level 1 Description: Amazon GuardDuty is a threat detection service that continuously monitors for malicious activity and unau...
Tue, 9 Sep, 2025 at 2:43 AM
Ensure There are High severity GuardDuty findings.
Profile Applicability: Level 1 Description: Amazon GuardDuty is a threat detection service that continuously monitors your AWS environment for malici...
Tue, 9 Sep, 2025 at 2:48 AM
Ensure GuardDuty is centrally managed.
Profile Applicability: Level 1 Description: Amazon GuardDuty is a threat detection service that continuously monitors your AWS environment for malici...
Tue, 9 Sep, 2025 at 2:50 AM