AWS Compute Services Benchmark v1.1.0

Ensure an Organizational EC2 Tag Policy Has Been Created
Profile Applicability: Level 1 Description:  An EC2 tag policy enables you to define tag compliance rules to ensure consistency and proper management o...
Thu, 10 Apr, 2025 at 3:34 AM
Ensure No AWS EC2 Instances Are Older Than 180 Days
Profile Applicability: Level 1 Description: It is important to ensure that AWS EC2 instances are not running indefinitely and are periodically reviewed...
Thu, 10 Apr, 2025 at 3:44 AM
Ensure Detailed Monitoring is Enabled for Production EC2 Instances
Profile Applicability: Level 2 Description: Detailed monitoring provides additional granularity of monitoring data for your Amazon EC2 instances. Enabl...
Thu, 10 Apr, 2025 at 3:55 AM
Ensure Default EC2 Security Groups Are Not Being Used
Profile Applicability: Level 1 Description: When launching an EC2 instance, a custom security group should always be assigned to ensure proper security...
Thu, 10 Apr, 2025 at 4:03 AM
Ensure the Use of IMDSv2 is Enforced on All Existing Instances
Profile Applicability: Level 2 Description: Ensure that Instance Metadata Service Version 2 (IMDSv2) is enforced on all running Amazon EC2 instances. I...
Thu, 10 Apr, 2025 at 4:11 AM
Ensure the Use of AWS Systems Manager to Manage EC2 Instances
Profile Applicability: Level 2 Description: AWS Systems Manager is a powerful service for managing EC2 instances and other AWS resources. It allows you ...
Thu, 10 Apr, 2025 at 4:17 AM
Ensure Unused ENIs Are Removed
Profile Applicability: Level 1 Description:  Elastic Network Interfaces (ENIs) in AWS are associated with EC2 instances and can be left in an available...
Thu, 10 Apr, 2025 at 4:21 AM
Ensure Instances Stopped for Over 90 Days Are Removed
Profile Applicability: Level 1 Description: This rule helps ensure that Amazon EC2 instances that have been stopped for more than 90 days are identifie...
Thu, 10 Apr, 2025 at 4:25 AM
Ensure EBS Volumes Attached to an EC2 Instance Are Marked for Deletion Upon Instance Termination
Profile Applicability:  Level 1 Description: This rule ensures that Amazon Elastic Block Store (EBS) volumes attached to Amazon EC2 instances are config...
Thu, 10 Apr, 2025 at 4:29 AM
Ensure Secrets and Sensitive Data Are Not Stored Directly in EC2 User Data
Profile Applicability: Level 1 Description:  EC2 User Data can be specified when launching an EC2 instance to configure the instance or include initial...
Thu, 10 Apr, 2025 at 4:34 AM