AWS New Checks

Ensure secrets are found in Lambda functions code.
Profile Applicability: Level 1 Description: This control ensures that AWS Lambda function code does not contain embedded secrets such as passwords, API k...
Tue, 14 Oct, 2025 at 3:40 AM
Ensure no secrets are in CloudFormation outputs.
Profile Applicability: Level 1 Description: This control ensures that AWS CloudFormation stack outputs do not contain sensitive data such as passwords, A...
Tue, 14 Oct, 2025 at 3:35 AM
Ensure EKS Control Plane Audit Logging is enabled for all log types
Profile Applicability: Level 1 Description: This control ensures that Amazon Elastic Kubernetes Service (EKS) Control Plane Audit Logging is enabled for ...
Tue, 14 Oct, 2025 at 3:30 AM
Ensure access to the EKS Control Plane Endpoint is restricted.
Profile Applicability: Level 1 Description: This control ensures that access to the Amazon Elastic Kubernetes Service (EKS) Control Plane Endpoint is res...
Tue, 14 Oct, 2025 at 3:27 AM
Ensure that EKS Clusters are configured with private endpoints enabled and public access disabled.
Profile Applicability: Level 1 Description: This control ensures that Amazon Elastic Kubernetes Service (EKS) clusters are configured to use private API ...
Tue, 14 Oct, 2025 at 3:23 AM
Ensure the use of root accounts is avoided.
Profile Applicability: Level 1 Description: This control ensures that the use of the AWS root account is avoided for everyday administrative or operation...
Tue, 14 Oct, 2025 at 3:17 AM
Ensure no root account access key exists.
Profile Applicability: Level 1 Description: This control ensures that the AWS root account does not have any access keys associated with it. The root acc...
Tue, 14 Oct, 2025 at 3:12 AM
Ensure IAM password policy requires minimum length of 14 or greater
Profile Applicability: Level 1 Description: This control ensures that the AWS Identity and Access Management (IAM) password policy enforces a minimum pas...
Tue, 14 Oct, 2025 at 3:08 AM
Ensure only hardware MFA is enabled for the root account.
Profile Applicability: Level 2 Description: This control ensures that the AWS root account is protected using a hardware multi-factor authentication (MFA...
Tue, 14 Oct, 2025 at 2:56 AM
Ensure that the IAM password policy mandates at least one number.
Profile Applicability: Level 1 Description: This control ensures that the AWS Identity and Access Management (IAM) password policy requires all user pass...
Tue, 14 Oct, 2025 at 2:51 AM