CIS AWS Database Services Benchmark v1.0.0

Ensure Least Privilege Access
 Profile Applicability: Level 1 Description: Ensure that permissions granted to IAM users, roles, and Aurora database accounts follow the principle of l...
Tue, 6 May, 2025 at 12:31 AM
Ensure Automatic Backups and Retention Policies are configured
Profile Applicability:  Level 1 Description: Backups help protect your data from accidental loss or database failure. With Amazon Aurora, you can enable au...
Tue, 6 May, 2025 at 12:44 AM
Ensure Multi-Factor Authentication (MFA) is in use
Profile Applicability: Level 1 Description:  Multi-Factor Authentication (MFA) adds an additional layer of security by requiring a second form of verifi...
Tue, 6 May, 2025 at 12:49 AM
Ensure to Choose the Appropriate Database Engine
Profile Applicability: Level 1 Description: Selecting the appropriate database engine (e.g., MySQL, PostgreSQL, Aurora, Oracle) ensures compatibility wi...
Tue, 6 May, 2025 at 12:55 AM
Ensure to Create The Appropriate Deployment Configuration
Profile Applicability: Level 1 Description:  This control ensures that Amazon RDS and other AWS-managed database services are deployed using configurat...
Tue, 6 May, 2025 at 1:00 AM
Ensure to Create a Virtual Private Cloud
Profile Applicability: Level 1 Description: Creating a Virtual Private Cloud (VPC) allows you to launch AWS resources in a logically isolated network. ...
Tue, 6 May, 2025 at 1:56 AM
Ensure to Configure Security Groups
Profile Applicability: Level 1 Description:  Security groups in AWS act as virtual firewalls that control inbound and outbound traffic to resources suc...
Tue, 6 May, 2025 at 2:03 AM
Enable Encryption at Rest
Profile Applicability: Level 1 Description:  Encryption at rest ensures that data stored in AWS-managed database services is protected using cryptograp...
Tue, 6 May, 2025 at 2:10 AM
Enable Encryption in Transit
Profile Applicability: Level 1 Description:  Enabling encryption in transit ensures that data sent between clients and AWS-managed database services is ...
Tue, 6 May, 2025 at 2:18 AM
Ensure to Implement Access Control and Authentication
Profile Applicability: Level 1 Description: Access control and authentication mechanisms ensure that only authorized users or services can access AWS-m...
Tue, 6 May, 2025 at 2:26 AM