AWS New Checks

Ensure that Lightsail instances are not publicly accessible
Ensure that Lightsail instances are not publicly accessible
Fri, 10 Oct, 2025 at 4:09 AM
Ensure Amazon Opensearch/Elasticsearch domains are not publicly accessible
Profile Applicability: Level 1 Description: This control ensures that Amazon OpenSearch Service (formerly Amazon Elasticsearch Service) domains are n...
Tue, 14 Oct, 2025 at 4:00 AM
Ensure no EC2 instances allow ingress from the internet to TCP port 3306 (MySQL).
Profile Applicability: Level 1 Description: This control ensures that Amazon EC2 instances hosting MySQL databases do not allow unrestricted inbound ...
Wed, 15 Oct, 2025 at 2:50 AM
Ensure Amazon EBS volumes should be protected by a backup plan.
Profile Applicability: Level 1 Description: This control ensures that Amazon Elastic Block Store (EBS) volumes are protected by a backup plan, which ...
Wed, 15 Oct, 2025 at 3:00 AM
Ensure no EC2 instances allow ingress from the internet to TCP port 5432 (PostgreSQL)
Profile Applicability: Level 1 Description: This control ensures that Amazon EC2 instances hosting PostgreSQL databases do not allow unrestricted inb...
Wed, 15 Oct, 2025 at 3:11 AM
Ensure Elasticache Redis cache clusters have in transit encryption enabled.
Profile Applicability: Level 1 Description: This control ensures that Amazon ElastiCache for Redis clusters are configured with in-transit encryption...
Tue, 14 Oct, 2025 at 6:28 AM
Ensure no secrets are in Lambda functions code.
Profile Applicability: Level 1 Description: This control ensures that AWS Lambda functions do not contain any secrets (such as passwords, API keys, a...
Tue, 14 Oct, 2025 at 4:14 AM
Ensure that RDS Snapshots and Cluster Snapshots are encrypted.
Profile Applicability: Level 1 Description: This control ensures that all Amazon RDS (Relational Database Service) snapshots and Amazon Aurora cluste...
Tue, 14 Oct, 2025 at 4:05 AM