AWS New Checks

Check if Amazon Elasticsearch/Opensearch Service domains has either Amazon Cognito or SAML authentication for Kibana enabled
Profile Applicability: Level 1 Description: Amazon Elasticsearch Service (Amazon OpenSearch Service) is a fully managed service that makes it easy to...
Thu, 20 Mar, 2025 at 4:48 AM
Check if the database has the public mode
Profile Applicability:  Level 2 Description:  Many cloud-based databases offer a "public mode" or an "open access" setting that allows ...
Thu, 20 Mar, 2025 at 5:02 AM
Static IP are allocated but not attached to any instance
Profile Applicability: Level 2 Description: Static IPs, such as Elastic IPs in AWS, are IP addresses that remain fixed and can be manually associated with ...
Thu, 20 Mar, 2025 at 5:12 AM
Ensure EMR Clusters Do Not Have Public IPs Assigned
Profile Applicability: Level 2 Description: Amazon EMR (Elastic MapReduce) clusters should be launched without assigning public IP addresses to their...
Thu, 20 Mar, 2025 at 7:51 AM
Check if instances have automated snapshots enabled
Profile Applicability: Level 1  Description: Amazon EC2 instances can be configured to automatically create snapshots of their associated Elastic Block...
Thu, 20 Mar, 2025 at 7:09 AM
Transfer Family Servers should have encryption in transit enabled
Profile Applicability:  Level 2 Description: AWS Transfer Family provides fully managed services for transferring files over SFTP, FTPS, and FTP. Enabli...
Thu, 20 Mar, 2025 at 7:21 AM
MQ RabbitMQ Brokers should use cluster deployment mode
Profile Applicability: Level 2 Description: RabbitMQ is a widely used message broker that supports high availability and fault tolerance through cluste...
Thu, 20 Mar, 2025 at 7:33 AM
Check if AWS Glue Data Catalog Settings Have Encrypt Connection Password Enabled
Profile Applicability: Level 1 Description: AWS Glue is a fully managed extract, transform, and load (ETL) service that enables the discovery, catalo...
Thu, 20 Mar, 2025 at 7:48 AM
MQ Broker Auto Minor Version Upgrades should be enabled
Profile Applicability: Level 2 Description: Amazon MQ brokers provide managed message broker services for applications that rely on message queuing sys...
Thu, 20 Mar, 2025 at 8:21 AM
Apache ActiveMQ brokers should be configured in active/standby mode
Profile Applicability: Level 2 Description: Apache ActiveMQ is a popular open-source messaging broker. Active/standby mode refers to a deployment config...
Thu, 20 Mar, 2025 at 8:31 AM