AWS New Checks

Ensure DataSync tasks should have logging enabled
Profile Applicability: Level 1 Description: AWS DataSync is a service that automates the transfer of large amounts of data between on-premises storage ...
Fri, 23 May, 2025 at 8:55 AM
Ensure for medium and high risks identified in workloads defined in the AWS Well-Architected Tool
Profile Applicability: Level 1 Description: The AWS Well-Architected Tool helps you review your workloads against AWS best practices in five pillars: O...
Fri, 23 May, 2025 at 8:54 AM
Ensure AWS WAFv2 WebACL logging is enabled
Profile Applicability: Level 1 Description: AWS WAFv2 (Web Application Firewall) provides robust protection for your web applications by filtering tr...
Fri, 23 May, 2025 at 8:52 AM
Ensure API Gateway Public Endpoints Have Authorizers Configured
Profile Applicability: Level 1 Description: Amazon API Gateway allows you to create and manage APIs for accessing AWS services, and it supports both pu...
Fri, 23 May, 2025 at 7:41 AM
Ensure API Gateway REST API Cache Data is Encrypted at Rest
Profile Applicability: Level 1 Description: Amazon API Gateway enables you to create, manage, and secure APIs for accessing AWS services. When using AP...
Fri, 23 May, 2025 at 7:39 AM
Ensure AWS WAFv2 WebACL has at least one rule or rule group
Profile Applicability: Level 1 Description: AWS WAFv2 (Web Application Firewall) helps protect web applications from common web exploits by allowing ...
Fri, 23 May, 2025 at 8:48 AM
Ensure API Gateway APIs and Methods Have Authorizers Configured
Profile Applicability: Level 1 Description: Amazon API Gateway enables you to create, manage, and secure APIs for accessing AWS services. Authorizers...
Fri, 23 May, 2025 at 7:38 AM
Ensure AWS WAFv2 WebACL rule or rule group has Amazon CloudWatch metrics enabled
Profile Applicability: Level 1 Description: AWS WAFv2 is a web application firewall that helps protect your applications from common web exploits. Am...
Fri, 23 May, 2025 at 8:47 AM
Ensure Multi-Factor Authentication (MFA) is enabled for Amazon Cognito User Pools
Profile Applicability: Level 1 Description: Amazon Cognito User Pools provide user authentication services for web and mobile applications. Multi-Facto...
Thu, 27 Mar, 2025 at 6:47 AM
Ensure EBS Snapshot lifecycle policies are defined.
Profile Applicability: Level 1 Description: Amazon Elastic Block Store (EBS) provides persistent block storage volumes for Amazon EC2 instances. EBS ...
Thu, 27 Mar, 2025 at 6:55 AM