AWS New Checks

Ensure AWS Organizations delegated administrators are trusted
Profile Applicability: Level 1 Description: AWS Organizations allows you to centrally manage multiple AWS accounts, and delegated administrators are tr...
Fri, 23 May, 2025 at 9:00 AM
Ensure Kubernetes cluster runs on a supported Kubernetes version
Profile Applicability: Level 1 Description: In Amazon Elastic Kubernetes Service (EKS), as well as other managed Kubernetes platforms, it is importan...
Thu, 27 Mar, 2025 at 4:15 AM
Ensure AWS Organization has tags policies enabled and attached
Profile Applicability: Level 1 Description: AWS Tag Policies allow organizations to define and enforce rules for the tags that are applied to resourc...
Fri, 23 May, 2025 at 8:58 AM
Ensure EKS Clusters are not publicly accessible
Profile Applicability: Level 1 Description: Amazon Elastic Kubernetes Service (EKS) is a managed service for running Kubernetes clusters on AWS. By d...
Thu, 27 Mar, 2025 at 4:28 AM
Ensure that AWS Organizations opt-out of AI services policy is enabled and disallow child-accounts to overwrite this policy
Profile Applicability: Level 1 Description: AWS Organizations provides the ability to manage and control access to AWS services across multiple account...
Thu, 27 Mar, 2025 at 4:28 AM
Ensure AWS Regions are restricted with SCP policies
Profile Applicability: Level 1 Description: Service Control Policies (SCPs) are a feature of AWS Organizations that allow administrators to control the...
Fri, 23 May, 2025 at 8:57 AM
Ensure Network Policy is Enabled and Set as Appropriate
Profile Applicability: Level 1 Description: In Kubernetes, a Network Policy is a set of rules that controls the communication between pods and/or ser...
Thu, 27 Mar, 2025 at 4:41 AM
Ensure Kubernetes Secrets are encrypted using Customer Master Keys (CMKs)
Profile Applicability: Level 1 Description: In Kubernetes, Secrets are used to store and manage sensitive information such as passwords, OAuth tokens, SS...
Thu, 27 Mar, 2025 at 4:53 AM
Ensure Clusters are created with Private Nodes
Profile Applicability: Level 1  Description: In Amazon Elastic Kubernetes Service (EKS) or other Kubernetes environments, private nodes are Kubernete...
Thu, 27 Mar, 2025 at 5:22 AM
Ensure account is part of an AWS Organizations
Profile Applicability: Level 1 Description: AWS Organizations allows you to centrally manage and govern multiple AWS accounts. An AWS account can be ...
Fri, 23 May, 2025 at 8:56 AM