AWS New Checks

Ensure ECR image scan found vulnerabilities in the newest image version
Profile Applicability: • Level 2 Description: Amazon Elastic Container Registry (ECR) image scanning identifies security vulnerabilities in container image...
Mon, 26 May, 2025 at 12:40 AM
Ensure Amazon SageMaker Training jobs have intercontainer encryption enabled
Profile Applicability: • Level 1 Description: Amazon SageMaker Training jobs allow users to run machine learning model training using one or more Docker co...
Mon, 26 May, 2025 at 1:02 AM
Ensure Amazon SageMaker Models have VPC settings configured
Profile Applicability: • Level 1 Description: Amazon SageMaker Models can be deployed with VPC configurations that restrict network access to the model end...
Mon, 26 May, 2025 at 1:18 AM
Ensure Amazon Elasticsearch/Opensearch Service domains have fine grained access control enabled
Profile Applicability: Level 1 Description: This check ensures that Fine-Grained Access Control (FGAC) is enabled for your Amazon Elasticsearch/Opensea...
Mon, 26 May, 2025 at 1:39 AM
Ensure GuardDuty EKS Runtime Monitoring should be enabled
Description Amazon GuardDuty is a threat detection service that continuously monitors for malicious activity and unauthorized behavior. EKS Runtime Monitor...
Mon, 26 May, 2025 at 1:45 AM
Ensure GuardDuty Lambda Protection is enabled
Profile Applicability: Level 1                       Description: Amazon GuardDuty Lambda Protection provides threat detection for AWS Lambda functions...
Mon, 26 May, 2025 at 1:50 AM
Ensure GuardDuty EKS Audit Log Monitoring Enabled
Profile Applicability: Level 1 Description: Amazon GuardDuty EKS Audit Log Monitoring provides threat detection for Amazon Elastic Kubernetes Service (...
Mon, 26 May, 2025 at 1:53 AM
Ensure Neptune DB clusters are configured to copy tags to snapshots
Profile Applicability: Level 2 Description: Amazon Neptune allows you to copy tags from your Neptune DB clusters to snapshots. Enabling Copy Tags to Sn...
Mon, 26 May, 2025 at 1:59 AM
Ensure Neptune Clusters Backup Retention Period
Profile Applicability: Level 1 Description: Amazon Neptune provides automatic backups that can be retained for a configurable number of days. It is...
Mon, 26 May, 2025 at 2:29 AM
Ensure the database does not have public mode enabled
Profile Applicability: Level 2 Description: Many cloud-based database services provide a "public mode" or "public access" option that a...
Mon, 26 May, 2025 at 3:03 AM