AWS New Checks

Ensure CloudWatch Has Allowed Cross-Account Sharing
Profile Applicability: Level 2 Description: AWS CloudWatch allows you to share log groups and metrics across accounts. Cross-account sharing is essen...
Sun, 23 Mar, 2025 at 5:02 AM
Ensure a Log Metric Filter and Alarm Exist for AWS Organizations Changes
Profile Applicability: Level 1 Description: It is essential to monitor changes to your AWS Organizations for auditing and security purposes. Using AW...
Sun, 23 Mar, 2025 at 5:17 AM
Check if Secrets Exist in CloudWatch Logs
Profile Applicability: Level 1 Description: It is crucial to monitor CloudWatch logs for any potential secrets, such as AWS credentials, passwords, o...
Sun, 23 Mar, 2025 at 5:25 AM
Ensure Route Table Changes are Monitored
Profile Applicability: Level 1 Description: Changes to route tables in a VPC are significant for network communication, and it is essential to monito...
Sun, 23 Mar, 2025 at 5:37 AM
Check if Amazon Elasticsearch/Opensearch Service domains have node-to-node encryption enabled
Profile Applicability: Level 1 Description: Amazon OpenSearch Service (formerly Amazon Elasticsearch Service) provides a fully managed service to run...
Mon, 24 Mar, 2025 at 1:06 AM
Ensure that there is at least one AWS Backup report plan
Profile Applicability: Level 2 Description: AWS Backup provides a centralized backup service to automate the backup of data across AWS services. One of...
Mon, 24 Mar, 2025 at 1:37 AM
Ensure CloudWatch Log Groups Have a Retention Policy of Specific Days
Profile Applicability: Level 1 Description: CloudWatch Log Groups allow you to define retention policies, which determine how long logs are kept. It ...
Mon, 24 Mar, 2025 at 1:58 AM
Ensure CloudWatch Log Groups Are Not Publicly Accessible
Profile Applicability: Level 1 Description: CloudWatch Log Groups are a vital part of monitoring your AWS resources and applications. To ensure the s...
Mon, 24 Mar, 2025 at 2:07 AM
ECS task definitions should not share the host's process namespace
Profile Applicability: Level 1 Description: Amazon ECS (Elastic Container Service) allows the deployment and management of Docker containers. By defaul...
Mon, 24 Mar, 2025 at 2:08 AM
Ensure AWS Backup vaults exist
Profile Applicability: Level 1 Description: AWS Backup Vaults are essential components of AWS Backup, providing a secure and centralized location to sto...
Mon, 24 Mar, 2025 at 2:19 AM