CIS AWS Benchmarks

4.11 Ensure Network Access Control List (NACL) changes are monitored (Manual)
Profile Applicability Level 1 Description: Network Access Control Lists (NACLs) are used in AWS VPCs to provide an additional layer of security by cont...
Tue, 22 Apr, 2025 at 3:33 AM
4.12 Ensure changes to network gateways are monitored (Manual)
Profile Applicability Level 1 Description: Network gateways in AWS, such as Internet Gateways (IGWs) and Virtual Private Gateways (VGWs), play a critic...
Tue, 22 Apr, 2025 at 3:50 AM
4.13 Ensure route table changes are monitored (Manual)
Profile Applicability Level 1 Description: Route tables in AWS VPC control the routing of traffic between subnets, peered VPCs, and the internet. Chang...
Tue, 22 Apr, 2025 at 4:00 AM
4.14 Ensure VPC changes are monitored (Manual)
Profile Applicability Level 1 Description AWS VPC (Virtual Private Cloud) allows users to define and control the network environment in which their AWS...
Tue, 22 Apr, 2025 at 4:09 AM
4.15 Ensure AWS Organizations changes are monitored (Manual)
Profile Applicability Level 1 Description: AWS Organizations allows you to set up and manage multiple AWS accounts, enabling centralized billing, gover...
Tue, 22 Apr, 2025 at 4:16 AM
4.16 Ensure AWS Security Hub is enabled (Automated)
Profile Applicability Level 1 Description: AWS Security Hub provides a comprehensive view of your security state within AWS and helps you monitor and i...
Tue, 22 Apr, 2025 at 4:25 AM
5.1.1 Ensure EBS volume encryption is enabled in all regions (Automated)
Profile Applicability Level 1 Description: Amazon Elastic Block Store (EBS) provides block-level storage for EC2 instances. To ensure that data is secu...
Tue, 22 Apr, 2025 at 4:33 AM
5.1.2 Ensure CIFS access is restricted to trusted networks to prevent unauthorized access (Automated)
Profile Applicability Level 1 Description: Common Internet File System (CIFS) is a protocol used to provide shared access to files, printers, and seria...
Tue, 22 Apr, 2025 at 4:43 AM
5.2 Ensure no Network ACLs allow ingress from 0.0.0.0/0 to remote server administration ports (Automated)
Profile Applicability Level 1 Description: Network Access Control Lists (NACLs) in AWS are used to control traffic to and from resources within a VPC. ...
Tue, 22 Apr, 2025 at 4:52 AM
5.3 Ensure no security groups allow ingress from 0.0.0.0/0 to remote server administration ports (Automated)
Profile Applicability Level 1 Description: Security groups in AWS control the flow of network traffic to and from resources, including EC2 instances. B...
Tue, 22 Apr, 2025 at 5:05 AM