AWS New Checks

Ensure Amazon SageMaker Training job have VPC settings configured
Profile Applicability: Level 1 Description: Amazon SageMaker is a fully managed service for building, training, and deploying machine learning models. ...
Mon, 26 May, 2025 at 12:52 AM
Ensu Amazon SageMaker Models have network isolation enabled
Profile Applicability: Level 1 Description: Amazon SageMaker is a fully managed service for building, training, and deploying machine learning models. ...
Thu, 18 Sep, 2025 at 6:57 AM
Ensure Amazon SageMaker Notebook instances have root access disabled
Profile Applicability: Level 1 Description: Amazon SageMaker provides fully managed Jupyter notebook environments for data scientists and developers to...
Thu, 18 Sep, 2025 at 6:55 AM
Ensure all VPC has public and private subnets defined.
Profile Applicability: Level 1 Description: A VPC (Virtual Private Cloud) in AWS is used to isolate and manage your cloud resources. Within a VPC, subn...
Fri, 12 Sep, 2025 at 4:44 AM
Ensure all VPC has subnets in more than one availability zone
Profile Applicability: Level 1 Description: A VPC (Virtual Private Cloud) in AWS provides network isolation for resources within the AWS cloud. AWS Ava...
Fri, 12 Sep, 2025 at 4:40 AM
EnsuAmazon EC2 should be configured to use VPC endpoints that are created for the Amazon EC2 service.
Profile Applicability: Level 1 Description: Amazon EC2 instances use VPC endpoints to privately connect to AWS services, including the Amazon EC2 servi...
Fri, 12 Sep, 2025 at 4:27 AM
Amazon EC2 should be configured to use VPC endpoints that are created for the Amazon EC2 service.
Profile Applicability: Level 1 Description: Amazon EC2 instances use VPC endpoints to privately connect to AWS services, including the Amazon EC2 servi...
Wed, 26 Mar, 2025 at 5:59 AM
Ensure Both VPN tunnels for an AWS Site-to-Site VPN connection should be up.
Profile Applicability: Level 1 Description: AWS Site-to-Site VPN connects an on-premises network to an Amazon Virtual Private Cloud (VPC) through an en...
Fri, 12 Sep, 2025 at 4:22 AM
Ensure no EC2 instances allow ingress from the internet to TCP port 139 or 445 (CIFS).
Profile Applicability: Level : 1 Description:  This check ensures that no EC2 instances in your AWS environment allow ingress (incoming) traffic from the...
Wed, 26 Mar, 2025 at 6:18 AM
Ensure Amazon VPC Interface Endpoints should have ENIs in more than one subnet.
Profile Applicability: Level 1 Description: Amazon VPC Interface Endpoints (powered by PrivateLink) enable private connectivity between your VPC and su...
Fri, 12 Sep, 2025 at 4:19 AM