AWS New Checks

Check if API Gateway REST API Cache Data is Encrypted at Rest
Profile Applicability: Level 1 Description: Amazon API Gateway enables you to create, manage, and secure APIs for accessing AWS services. When using AP...
Thu, 27 Mar, 2025 at 6:24 AM
Check if AWS WAFv2 WebACL has at least one rule or rule group
Profile Applicability: Level 1 Description: AWS WAFv2 (Web Application Firewall) helps protect web applications from common web exploits by allowing ...
Thu, 27 Mar, 2025 at 6:34 AM
Check if API Gateway has configured authorizers at api or method level.
Profile Applicability: Level 1 Description: Amazon API Gateway enables you to create, manage, and secure APIs for accessing AWS services. Authorizers...
Thu, 27 Mar, 2025 at 6:40 AM
Check if AWS WAFv2 WebACL rule or rule group has Amazon CloudWatch metrics enabled
Profile Applicability: Level 1 Description: AWS WAFv2 is a web application firewall that helps protect your applications from common web exploits. Am...
Thu, 27 Mar, 2025 at 6:41 AM
Ensure Multi-Factor Authentication (MFA) is enabled for Amazon Cognito User Pools
Profile Applicability: Level 1 Description: Amazon Cognito User Pools provide user authentication services for web and mobile applications. Multi-Facto...
Thu, 27 Mar, 2025 at 6:47 AM
Ensure EBS Snapshot lifecycle policies are defined.
Profile Applicability: Level 1 Description: Amazon Elastic Block Store (EBS) provides persistent block storage volumes for Amazon EC2 instances. EBS ...
Thu, 27 Mar, 2025 at 6:55 AM
Amazon Cognito User Pool should prevent user existence errors
Profile Applicability: Level 1 Description: Amazon Cognito User Pools manage user authentication and provide the infrastructure to sign up, sign in, an...
Thu, 27 Mar, 2025 at 6:56 AM
Ensure Cognito User Pool has password policy to require at least one lowercase letter
Profile Applicability: Level 1 Description: Amazon Cognito provides authentication, authorization, and user management services for applications. Passw...
Thu, 27 Mar, 2025 at 7:03 AM
Ensure that advanced security features are enabled for Amazon Cognito User Pools to block sign-in by users with suspected compromised credentials
Profile Applicability: Level 1 Description: Amazon Cognito provides user authentication and access management services for web and mobile application...
Thu, 27 Mar, 2025 at 7:10 AM
Ensure that the password policy for your Amazon Cognito user pool requires at least one symbol
Profile Applicability: Level 1 Description: Amazon Cognito provides user authentication and access control services. Password policies for Cognito us...
Thu, 27 Mar, 2025 at 7:20 AM