AWS New Checks

Ensure IAM Access Analyzer is enabled without findings
Profile Applicability: Level 1 Description: This control ensures that IAM Access Analyzer is enabled in each AWS account and that it does not con...
Thu, 9 Oct, 2025 at 6:20 AM
Ensure IAM Access Analyzer is enabled
Profile Applicability: Level 1 Description: This control ensures that IAM Access Analyzer is enabled in every AWS account and region. IAM Access Ana...
Thu, 9 Oct, 2025 at 7:07 AM
Ensure publicly accessible Redshift clusters are checked
Profile Applicability: Level 1 Description: This control ensures that Amazon Redshift clusters are not publicly accessible unless explicitly requ...
Thu, 9 Oct, 2025 at 7:19 AM
Ensure Redshift cluster has audit logging enabled
Ensure Redshift cluster has audit logging enabled
Tue, 7 Oct, 2025 at 9:25 AM
Ensure Trusted Advisor is checked for errors and warnings
Profile Applicability: Level 1 Description: This control ensures that AWS Trusted Advisor is regularly reviewed for any reported errors, warnings, or ...
Thu, 9 Oct, 2025 at 1:46 AM
Ensure CloudTrail log file validation is enabled
Profile Applicability: Level 1 Description: This control ensures that AWS CloudTrail log file validation is enabled to detect any modifications to Cl...
Thu, 9 Oct, 2025 at 2:27 AM
Ensure CloudTrail is enabled across all regions
Ensure CloudTrail is enabled across all regions.
Tue, 7 Oct, 2025 at 7:25 AM
Ensure CloudTrail logs are encrypted at rest using KMS CMKs
Profile Applicability: Level 1 Description This control ensures that AWS CloudTrail logs are encrypted at rest using AWS Key Management Service (K...
Thu, 9 Oct, 2025 at 2:49 AM
Ensure CloudTrail trails are integrated with CloudWatch Logs
Profile Applicability: Level 1 Description: This control ensures that AWS CloudTrail trails are integrated with Amazon CloudWatch Logs to enable n...
Thu, 9 Oct, 2025 at 2:58 AM
Ensure the S3 bucket CloudTrail logs is not publicly accessible
Profile Applicability: Level 1 Description: This control ensures that the Amazon S3 bucket used to store AWS CloudTrail logs is not publicly acce...
Thu, 9 Oct, 2025 at 3:45 AM