Ensure that all expired SSL/TLS certificates stored in AWS IAM are removed
Quellsprache: Englisch
Menü
Skills in diesem Repository
SkillsMP hat 7.442 Skills aus CyberStrikeus/CyberStrike gesammelt. Öffne einen Skill, um Quelle und Details zu prüfen.
CyberStrikeus/CyberStrikeEs werden 40 von 7.442 gesammelten Skills angezeigt.
Ensure that all expired SSL/TLS certificates stored in AWS IAM are removed
Quellsprache: Englisch
Ensure that IAM External Access Analyzer is enabled for all regions
Quellsprache: Englisch
Ensure IAM users are managed centrally via identity federation or AWS Organizations for multi-account environments
Quellsprache: Englisch
Maintain current AWS account contact details
Quellsprache: Englisch
Ensure access to AWSCloudShellFullAccess is restricted
Quellsprache: Englisch
Ensure AWS resource policies do not allow unrestricted access using "Principal": "*"
Quellsprache: Englisch
Ensure security contact information is registered
Quellsprache: Englisch
Ensure no 'root' user account access key exists
Quellsprache: Englisch
Ensure MFA is enabled for the 'root' user account
Quellsprache: Englisch
Ensure hardware MFA is enabled for the 'root' user account
Quellsprache: Englisch
Eliminate use of the 'root' user for administrative and daily tasks
Quellsprache: Englisch
Ensure IAM password policy requires minimum length of 14 or greater
Quellsprache: Englisch
Ensure IAM password policy prevents password reuse
Quellsprache: Englisch
Ensure S3 Bucket Policy is set to deny HTTP requests
Quellsprache: Englisch
Ensure MFA Delete is enabled on S3 buckets
Quellsprache: Englisch
Ensure all data in Amazon S3 has been discovered, classified, and secured when necessary
Quellsprache: Englisch
Ensure that S3 is configured with 'Block Public Access' enabled
Quellsprache: Englisch
Ensure that encryption-at-rest is enabled for RDS instances
Quellsprache: Englisch
Ensure the Auto Minor Version Upgrade feature is enabled for RDS instances
Quellsprache: Englisch
Ensure that RDS instances are not publicly accessible
Quellsprache: Englisch
Ensure Multi-AZ deployments are used for enhanced availability in Amazon RDS
Quellsprache: Englisch
Ensure that encryption is enabled for EFS file systems
Quellsprache: Englisch
Ensure CloudTrail is enabled in all regions
Quellsprache: Englisch
Ensure all AWS-managed web front-end services have access logging enabled
Quellsprache: Englisch
Ensure CloudTrail log file validation is enabled
Quellsprache: Englisch
Ensure AWS Config is enabled in all regions
Quellsprache: Englisch
Ensure that server access logging is enabled on the CloudTrail S3 bucket
Quellsprache: Englisch
Ensure CloudTrail logs are encrypted at rest using KMS CMKs
Quellsprache: Englisch
Ensure rotation for customer-created symmetric CMKs is enabled
Quellsprache: Englisch
Ensure VPC flow logging is enabled in all VPCs
Quellsprache: Englisch
Ensure that object-level logging for write events is enabled for S3 buckets
Quellsprache: Englisch
Ensure that object-level logging for read events is enabled for S3 buckets
Quellsprache: Englisch
Ensure unauthorized API calls are monitored
Quellsprache: Englisch
Ensure security group changes are monitored
Quellsprache: Englisch
Ensure Network Access Control List (NACL) changes are monitored
Quellsprache: Englisch
Ensure changes to network gateways are monitored
Quellsprache: Englisch
Ensure route table changes are monitored
Quellsprache: Englisch
Ensure VPC changes are monitored
Quellsprache: Englisch
Ensure AWS Organizations changes are monitored
Quellsprache: Englisch
Ensure AWS Security Hub is enabled
Quellsprache: Englisch