CIS AWS Database Services Benchmark v1.0.0

Ensure to Regularly Patch Systems
Profile Applicability: Level 1 Description: AWS-managed database services should be regularly patched to ensure that known vulnerabilities are addresse...
Tue, 6 May, 2025 at 2:32 AM
Ensure Monitoring and Logging is Enabled
Profile Applicability: Level 1 Description:  Enabling monitoring and logging provides visibility into the performance, availability, and behavior of yo...
Tue, 6 May, 2025 at 2:43 AM
Ensure to Enable Backup and Recovery
Profile Applicability: Level 1 Description:  Enabling backup and recovery for AWS-managed database services such as RDS, QLDB, and DocumentDB ensures t...
Tue, 6 May, 2025 at 2:49 AM
Ensure to Regularly Review Security Configuration
Profile Applicability: Level 1 Description:  Regular reviews of security configurations across your AWS-managed databases help ensure that permissions,...
Tue, 6 May, 2025 at 2:59 AM
Ensure AWS Identity and Access Management (IAM) is in use
Profile Applicability: Level 1 Description:  AWS Identity and Access Management (IAM) should be used to control access to AWS-managed database services...
Tue, 6 May, 2025 at 3:08 AM
Ensure Fine-Grained Access Control is implemented
Profile Applicability: Level 1 Description:  Fine-Grained Access Control (FGAC) restricts access to individual items or attributes within database tabl...
Tue, 6 May, 2025 at 3:15 AM
Ensure DynamoDB Encryption at Rest
 Profile Applicability: Level 1 Description:  Amazon DynamoDB provides the ability to encrypt data at rest to help protect sensitive information. Encry...
Tue, 6 May, 2025 at 3:21 AM
Ensure DynamoDB Encryption in Transit
 Profile Applicability: Level 1 Description:  Encryption in transit ensures that data moving between your DynamoDB table and its clients is encrypted, ...
Tue, 6 May, 2025 at 3:26 AM
Ensure VPC Endpoints are configured
 Profile Applicability: Level 1 Description:  VPC endpoints allow private connections between your VPC and supported AWS services, ensuring that traffi...
Tue, 6 May, 2025 at 3:31 AM
Ensure DynamoDB Streams and AWS Lambda for Automated Compliance Checking is Enabled
Profile Applicability: Level 1 Description:  DynamoDB Streams capture changes to DynamoDB tables in real-time and can trigger AWS Lambda functions to p...
Tue, 6 May, 2025 at 3:40 AM