AWS New Checks

Ensure CloudFront Distributions Are Using AWS WAF
Profile Applicability:  Level 2 Description AWS WAF is a web application firewall that helps protect your web applications and APIs from common web explo...
Wed, 10 Sep, 2025 at 2:01 AM
Ensure Network Load Balancers (NLB) have TLS termination enabled
Profile Applicability: Level 2 Description: Network Load Balancer (NLB) is a highly scalable and low-latency load balancing service in AWS that operate...
Thu, 11 Sep, 2025 at 4:57 AM
Ensure ELBV2 has listeners configured
Profile Applicability: Level 1 Description: Elastic Load Balancer v2 (ELBv2) is a fully managed load balancing service that distributes incoming traffi...
Thu, 11 Sep, 2025 at 5:02 AM
Ensure Elastic Load Balancers (ELB) Have Logging Enabled
Profile Applicability: Level 1 Description: Elastic Load Balancing (ELB) is a service that automatically distributes incoming application or network tr...
Thu, 11 Sep, 2025 at 5:09 AM
Ensure CloudFront Distributions with S3 Origin Use Origin Access Control (OAC)
Profile Applicability: Level 1 Description: Amazon CloudFront is a content delivery network (CDN) that can distribute content from various origins, inclu...
Wed, 10 Sep, 2025 at 2:07 AM
Ensure Application Load Balancer Has a WAF Web ACL Attached
Profile Applicability: Level 1 Description: AWS Application Load Balancer (ALB) is a fully managed load balancing service that automatically distribute...
Thu, 11 Sep, 2025 at 5:20 AM
Ensure CloudFront Distributions Encrypt Traffic to Custom Origins
  Profile Applicability: Level 1 Description: Amazon CloudFront is a content delivery network (CDN) that can distribute content from multiple types of or...
Wed, 10 Sep, 2025 at 2:13 AM
Ensure the Application Load Balancer is Configured with Strictest Desync Mitigation Mode
Profile Applicability: Level 2 Description: Amazon Application Load Balancer (ALB) provides a highly available and scalable load balancing service for ...
Thu, 11 Sep, 2025 at 5:31 AM
Ensure Cross-Zone Load Balancing is Enabled for Network Load Balancers (NLBs) and Gateway Load Balancers (GWLB)
Profile Applicability: Level 1 Description: For Network Load Balancers (NLBs) and Gateway Load Balancers (GWLBs), enabling Cross-Zone Load Balancing en...
Mon, 15 Sep, 2025 at 4:55 AM
Ensure AWS KMS Keys Are Not Deleted Unintentionally
Profile Applicability: Level 2 Description: Amazon Key Management Service (KMS) provides a centralized way to create and manage encryption keys. Deleti...
Mon, 15 Sep, 2025 at 5:08 AM