null-open-security-community / Cloud-Project

8 stars 2 forks source link

Security Baseline : AWS #30

Open 0xCardinal opened 1 year ago

0xCardinal commented 1 year ago

Add a list of security control related to AWS.

anubhav1992 commented 11 months ago

Add a list of security control related to AWS.

* First Milestone - 10 Checks

Following are some suggestions:

  1. Enable S3 Bucket Versioning
  2. Implement Strong Password Policies
  3. Enable Multi-Factor Authentication (MFA)
  4. Configure VPC Network Security Groups
  5. Enable AWS CloudTrail Logging
  6. Implement IAM Role Least Privilege
  7. Enable AWS Config Rules
  8. Implement Security Groups Ingress/Egress Controls
  9. Enforce Encryption for Sensitive Data
  10. Configure AWS Trusted Advisor Checks