Information Security
AWS Cloud Security Checklist
🔒

AWS Cloud Security Checklist

1
Verify AWS Identity and Access Management (IAM) configurations
2
Check for unused security groups
3
Inspect default security group configurations
4
Review AWS CloudTrail settings
5
Ensure encryption is enabled at rest and in transit
6
Check for public Amazon S3 buckets
7
Monitor AWS GuardDuty findings
8
Ensure VPC flow logging is enabled
9
Verify AWS Config is monitoring all regions
10
Check for unrestricted inbound access on certain ports
11
Ensure AWS CloudWatch is deployed and set up correctly
12
Approval: Compliance Officer
13
Ensure data integrity with AWS Macie
14
Review EC2 instances for public IP assignments
15
Verify proper AWS Shield (DDoS protection) configurations
16
Check AWS Lambda function policies
17
Ensure EBS snapshots are not publicly accessible
18
Assess RDS instances for public accessibility
19
Approval: Security Administrator
20
Check AWS WAF for proper configurations