Policies
AWS
Auto Scaling
ASG
CloudWatch
LogGroup
Cloudformation
Stack
DynamoDB
Table
- AWS DynamoDB Tables should have Deletion Protection enabled
- AWS ECR Repositories should have a lifecycle policy configured
- AWS Kinesis Streams should be encrypted
EC2
Instance
Snapshot
VPC Endpoint
ECS
Cluster
Task
EFS
File System
ELB
Load Balancer
- AWS ALB Low Traffic Detector
- AWS NLB Low Traffic Policy
- Check AWS Classic Load Balancer Low Traffic
- GWLB Low Usage Detector
ElastiCache
Cluster
- AWS ElastiCache Low Connection Count
- ElastiCache Instances should leverage ARM instances
- ElastiCache Low Utilization Check
Kendra
Index
Lambda
Function
- AWS Lambda Functions should not have an excessive number of old versions
- AWS Lambdas should leverage ARM instances
Neptune
Cluster
DB
OpenSearch
Domain
RDS
DB
- AWS RDS DB Instances should automatically create backups
- AWS RDS DB Instances should automatically version upgrade
- AWS RDS DB Instances should have deletion protection enabled
- AWS RDS DB Instances should have deletion protection enabled
- AWS RDS DB Instances should have performance insights enabled
- AWS RDS DB Instances should not be publicly accessible
- AWS RDS DB Instances should use encrypted storage
- AWS RDS DBClusters should leverage ARM instances
- AWS RDS Idle DBInstance Check