AWS New Checks

Ensure Elasticache Redis cache clusters have at rest encryption enabled.
Profile Applicability: Level 1 Description: Amazon ElastiCache provides managed Redis and Memcached services for in-memory caching. At-rest encryption ...
Wed, 26 Mar, 2025 at 10:25 PM
Ensure Elasticache Elasticache Redis replication groups of earlier versions should have Redis OSS AUTH enabled.
Profile Applicability: Level 1 Description: Amazon ElastiCache provides managed Redis and Memcached services for in-memory caching. Redis supports auth...
Wed, 26 Mar, 2025 at 10:49 PM
Ensure Elasticache Redis cache cluster has Multi-AZ enabled.
Profile Applicability: Level 1 Description: Amazon ElastiCache provides in-memory caching for improving performance of applications by offloading dat...
Wed, 26 Mar, 2025 at 10:59 PM
Ensure Config Recorder is Using Service-Linked AWS Config Role
Profile Applicability: Level 1 Description: The AWS Config Recorder is responsible for recording configuration changes to AWS resources in your account...
Thu, 27 Mar, 2025 at 12:08 AM
SageMaker endpoint production variants should have at least two initial instances
Profile Applicability: Level 1 Description: Amazon SageMaker provides fully managed endpoints for deploying machine learning models to production envir...
Thu, 27 Mar, 2025 at 2:14 AM
Ensure Secrets Manager secrets are not publicly accessible
Profile Applicability: Level 1 Description: AWS Secrets Manager helps manage, retrieve, and rotate credentials, API keys, and other sensitive informati...
Thu, 27 Mar, 2025 at 2:20 AM
Check if Secrets Manager secret rotation is enabled
Profile Applicability: Level 1 Description: AWS Secrets Manager helps securely store and manage sensitive information such as database credentials, API...
Thu, 27 Mar, 2025 at 2:26 AM
Ensure secrets manager secrets are not unused
Profile Applicability: Level 1 Description: AWS Secrets Manager helps store and manage sensitive information such as database credentials, API keys, an...
Thu, 27 Mar, 2025 at 2:32 AM
Secrets should be rotated periodically
Profile Applicability: Level 1 Description: AWS Secrets Manager enables the secure storage and management of sensitive information like database creden...
Thu, 27 Mar, 2025 at 2:38 AM
Check if ECR Registry has scan on push enabled
Profile Applicability: Level 1 Description: Amazon Elastic Container Registry (ECR) is a fully managed Docker container registry that enables developer...
Thu, 27 Mar, 2025 at 2:44 AM