AWS New Checks

Ensure CodeBuild Project uses a controlled buildspec
Profile Applicability: Level 1 Description: In AWS CodeBuild, the buildspec file defines the build commands and settings for the project. This file is ...
Thu, 18 Sep, 2025 at 6:22 AM
Ensure CodeBuild report group exports are encrypted at rest
Profile Applicability: Level 1 Description: Amazon CodeBuild allows you to create report groups to track and manage the results of your builds. Report ...
Thu, 18 Sep, 2025 at 6:16 AM
Ensure DocumentDB Clusters have backup enabled
Profile Applicability: Level 1 Description: Amazon DocumentDB automatically creates backups of your clusters by enabling automated backups. These backu...
Thu, 18 Sep, 2025 at 6:03 AM
Ensure DocumentDB Clusters has deletion protection enabled
Profile Applicability: Level 1 Description: Amazon DocumentDB provides deletion protection to prevent accidental deletion of clusters. When deletion pr...
Thu, 18 Sep, 2025 at 5:58 AM
Ensure DocumentDB Cluster have Multi-AZ enabled
Profile Applicability: Level 1 Description: Amazon DocumentDB clusters can be deployed with Multi-AZ (Availability Zone) for high availability and faul...
Thu, 18 Sep, 2025 at 5:54 AM
Ensure DocumentDB manual cluster snapshot is public
Profile Applicability: Level 1 Description: Amazon DocumentDB allows you to create manual snapshots of your clusters, which can be used for backup or d...
Thu, 18 Sep, 2025 at 5:50 AM
Ensure DocumentDB cluster storage is encrypted
Profile Applicability: Level 1 Description: Amazon DocumentDB provides storage encryption to protect data at rest. By default, DocumentDB clusters are ...
Thu, 18 Sep, 2025 at 5:35 AM
Enable DocumentDB clusters are using the log export feature
Profile Applicability: Level 1 Description: Amazon DocumentDB supports the ability to export logs such as slow query logs, audit logs, and general logs...
Thu, 18 Sep, 2025 at 5:29 AM
Ensure that CDKToolkit stacks have a Bootstrap version of 21 or higher to mitigate security risks
Profile Applicability: Level 1 Description: AWS Cloud Development Kit (CDK) is a framework used to define cloud infrastructure using programming langua...
Fri, 28 Mar, 2025 at 3:59 AM
Ensure termination protection for Cloudformation Stacks Enabled
Profile Applicability: Level 1 Description: AWS CloudFormation provides an automated way to manage the deployment and lifecycle of AWS resources. Termi...
Thu, 18 Sep, 2025 at 5:15 AM