AWS New Checks

Ensure Unassigned Elastic IPs Are Identified and Removed
Profile Applicability:  Level 2 Description Elastic IP addresses (EIPs) are public IPv4 addresses designed for use in Amazon Web Services (AWS). An EIP t...
Wed, 26 Mar, 2025 at 4:01 AM
Ensure Amazon EFS Protects Sensitive Data with Encryption at Rest
Profile Applicability: Level 1 Description: Amazon Elastic File System (EFS) provides scalable, elastic file storage for use with AWS Cloud services ...
Wed, 26 Mar, 2025 at 4:15 AM
Ensure no security groups allow ingress from 0.0.0.0/0 or ::/0 to high risk ports
Profile Applicability:  Level 2 Description: This check ensures that no security groups in your AWS environment allow ingress (incoming) traffic from 0.0...
Wed, 26 Mar, 2025 at 4:20 AM
Ensure Amazon EFS File Systems are Configured with Multi-AZ
Profile Applicability: Level 1 Description: Amazon Elastic File System (EFS) is a fully managed, scalable file storage service that provides storage ...
Wed, 26 Mar, 2025 at 4:29 AM
Ensure trust boundaries in VPC endpoint connections.
Profile Applicability: Level 1 Description: A VPC endpoint allows private connections between a VPC (Virtual Private Cloud) and supported AWS services ...
Mon, 26 May, 2025 at 12:05 AM
Ensure Amazon SageMaker Notebook instances have direct internet access
Profile Applicability: Level 1 Description: Amazon SageMaker is a fully managed service that allows data scientists and developers to quickly build, tr...
Mon, 26 May, 2025 at 12:54 AM
Ensure no Network ACLs allow ingress from 0.0.0.0/0 to SSH port 22
Profile Applicability: Level : 2 Description:  This check ensures that no Network Access Control Lists (NACLs) in your AWS environment allow ingress (...
Wed, 26 Mar, 2025 at 4:46 AM
Ensure CodeArtifact Internal Packages Do Not Allow External Public Source Publishing
Profile Applicability: Level 1 Description: AWS CodeArtifact is a fully managed artifact repository service that enables organizations to securely st...
Wed, 26 Mar, 2025 at 4:47 AM
Check if Amazon SageMaker Notebook instances have direct internet access
Profile Applicability: Level 1 Description: Amazon SageMaker is a fully managed service that allows data scientists and developers to quickly build, tr...
Wed, 26 Mar, 2025 at 4:47 AM
Ensure Amazon SageMaker Training jobs have volume and output with KMS encryption enabled
Profile Applicability: Level 1 Description: Amazon SageMaker is a fully managed service for building, training, and deploying machine learning models. ...
Fri, 23 May, 2025 at 9:03 AM