AWS New Checks

Ensure FSx Windows File Systems are Configured with Multi-AZ
Profile Applicability: Level 1 Description: Amazon FSx for Windows File Server can be configured to deploy with high availability using Multi-AZ, whi...
Fri, 21 Mar, 2025 at 4:20 AM
Ensure S3 buckets have object lock enabled
Profile Applicability: Level 2 Description: Amazon S3 Object Lock is a feature that prevents objects in an S3 bucket from being deleted or modified for...
Mon, 26 May, 2025 at 3:29 AM
Ensure Glue development endpoints have Job bookmark encryption enabled.
Profile Applicability: Level 1 Description: AWS Glue is a fully managed ETL (Extract, Transform, Load) service that enables the preparation and loadi...
Fri, 23 May, 2025 at 2:29 AM
Ensure S3 buckets have a Lifecycle configuration enabled
Profile Applicability: Level 2 Description: Amazon S3 provides the ability to configure Lifecycle policies that automate the transition of objects betw...
Mon, 26 May, 2025 at 3:30 AM
Ensure S3 buckets have ACLs enabled
Profile Applicability: Level 2 Description: Amazon S3 Access Control Lists (ACLs) are a mechanism to control access to S3 buckets and objects at the in...
Mon, 26 May, 2025 at 3:31 AM
Ensure there are no S3 buckets writable by Everyone or Any AWS customer
Profile Applicability: Level 1 Description: Amazon S3 allows users to configure Access Control Lists (ACLs) and bucket policies to control who can acce...
Fri, 21 Mar, 2025 at 4:47 AM
Ensure Glue ML Transform Encryption at Rest is Enabled.
Profile Applicability: Level 1 Description: AWS Glue is a fully managed ETL (Extract, Transform, Load) service that facilitates data preparation and lo...
Fri, 23 May, 2025 at 2:30 AM
​Check if Glue ETL Jobs have CloudWatch Logs encryption enabled
Profile Applicability: Level 1 Description: AWS Glue is a fully managed ETL (Extract, Transform, Load) service that helps with preparing and loading ...
Fri, 21 Mar, 2025 at 5:16 AM
Ensure Glue ETL Jobs have Job bookmark encryption enabled.
Profile Applicability: Level 1 Description: AWS Glue is a fully managed ETL (Extract, Transform, Load) service that simplifies the preparation and lo...
Fri, 23 May, 2025 at 2:32 AM
Ensure S3 buckets have KMS encryption enabled
Profile Applicability: Level 1 Description: Amazon S3 supports server-side encryption with AWS Key Management Service (KMS) keys (SSE-KMS) to protect y...
Mon, 26 May, 2025 at 3:39 AM