AWS New Checks

Check if Amazon Elasticsearch/Opensearch Service domains have fine grained access control enabled
Profile Applicability: Level 1 Description: This check ensures that Fine-Grained Access Control (FGAC) is enabled for your Amazon Elasticsearch/Opensea...
Wed, 19 Mar, 2025 at 7:35 AM
Ensure Classic Load Balancers with SSL/HTTPS Listeners Use Certificates from AWS Certificate Manager (ACM)
Profile Applicability: Level 2 Description: When using Classic Load Balancers (CLB) with SSL/HTTPS listeners, it is recommended to use AWS Certificat...
Wed, 19 Mar, 2025 at 7:57 AM
Check if Amazon Elasticsearch/Opensearch Service domains have encryption at-rest enabled
Profile Applicability: Level 1 Description: Amazon Elasticsearch Service (Amazon OpenSearch Service) provides managed clusters to run Elasticsearch ...
Wed, 19 Mar, 2025 at 8:55 AM
Ensure Classic Load Balancer is Configured Across Multiple Availability Zones
Profile Applicability: Level 2 Description: A Classic Load Balancer (CLB) should be configured to span multiple Availability Zones (AZs) to ensure hi...
Thu, 20 Mar, 2025 at 12:58 AM
Ensure Elasticsearch/Opensearch domains have fault-tolerant data nodes
Profile Applicability: Level 1 Description: Elasticsearch and OpenSearch are distributed search and analytics engines used to store, search, and anal...
Thu, 20 Mar, 2025 at 1:02 AM
Ensure Classic Load Balancer Connection Draining is Enabled
Profile Applicability: Level 2 Description: Connection Draining for Classic Load Balancers (CLB) ensures that in-flight requests are allowed to compl...
Thu, 20 Mar, 2025 at 1:16 AM
Ensure Cross-Zone Load Balancing is Enabled for Classic Load Balancers (CLBs)
Profile Applicability: Level 2 Description: Cross-Zone Load Balancing ensures that each Classic Load Balancer (CLB) distributes incoming traffic even...
Thu, 20 Mar, 2025 at 1:29 AM
Check if Amazon SageMaker Training jobs have intercontainer encryption enabled
Profile Applicability:  Level 2 Description:  Amazon SageMaker provides fully managed machine learning services for building, training, and deploying model...
Thu, 20 Mar, 2025 at 3:14 AM
Check if Amazon SageMaker Training jobs have network isolation enabled
Profile Applicability: Level 2 Description: Amazon SageMaker allows you to run machine learning training jobs securely and at scale. Network isolation is a...
Thu, 20 Mar, 2025 at 4:40 AM
Check if Amazon SageMaker Notebook instances have data encryption enabled
Profile Applicability: Level 1 Description:  Amazon SageMaker Notebook instances provide a fully managed environment for data scientists to develop, train,...
Thu, 20 Mar, 2025 at 4:49 AM