AWS New Checks

Ensure no Security Groups are currently unused.
Profile Applicability: Level 1 Description: This control ensures that all AWS Security Groups are actively associated with running resources such as ...
Tue, 14 Oct, 2025 at 1:06 AM
Ensure there are no EC2 AMIs set as Public.
Profile Applicability: Level 1 Description: This control ensures that Amazon Machine Images (AMIs) in your AWS account are not publicly shared. A pub...
Tue, 14 Oct, 2025 at 1:14 AM
Ensure no security groups allow ingress from 0.0.0.0/0 or ::/0 to Redis port 6379.
Profile Applicability: Level 1 Description: This control ensures that AWS Security Groups do not allow unrestricted inbound access (0.0.0.0/0 for IPv...
Tue, 14 Oct, 2025 at 1:26 AM
Ensure to check for internet facing EC2 instances with Instance Profiles attached.
Profile Applicability: Level 1 Description: This control ensures that internet-facing Amazon EC2 instances (those with a public IP address or assigne...
Tue, 14 Oct, 2025 at 1:34 AM
Ensure no security groups allow ingress from 0.0.0.0/0 or ::/0 to any port.
Profile Applicability: Level 1 Description: This control ensures that AWS Security Groups do not allow unrestricted inbound traffic (0.0.0.0/0 for IP...
Tue, 14 Oct, 2025 at 1:42 AM
Ensure EBS snapshots are encrypted.
Profile Applicability: Level 1 Description: This control ensures that all Amazon Elastic Block Store (EBS) snapshots are encrypted to protect the dat...
Tue, 14 Oct, 2025 at 1:53 AM
Ensure no security groups allow ingress from 0.0.0.0/0 or ::/0 to MongoDB ports 27017 and 27018.
Profile Applicability: Level 1 Description: This control ensures that AWS Security Groups do not allow unrestricted inbound access (0.0.0.0/0 for IPv...
Tue, 14 Oct, 2025 at 2:09 AM
Ensure EC2 Instances older than specific days are checked.
Profile Applicability: Level 1 Description: This control ensures that Amazon EC2 instances running beyond a defined number of days (e.g., 90 days) ar...
Tue, 14 Oct, 2025 at 2:19 AM
Ensure IAM instance roles are used for AWS resource access from instances.
Profile Applicability: Level 1 Description: This control ensures that the AWS Identity and Access Management (IAM) password policy requires all user ...
Tue, 14 Oct, 2025 at 2:26 AM
Ensure there are no EBS Volumes unencrypted.
Profile Applicability: Level 1 Description: This control ensures that all Amazon Elastic Block Store (EBS) volumes are encrypted to protect data at r...
Tue, 14 Oct, 2025 at 2:34 AM