Item Search

NameAudit NamePluginCategory
1.2.16 Ensure that the --profiling argument is set to falseCIS Kubernetes Benchmark v1.8.0 L1 MasterUnix

AUDIT AND ACCOUNTABILITY

1.2.17 Ensure that the --profiling argument is set to falseCIS Kubernetes v1.23 Benchmark v1.0.1 L1 MasterUnix

AUDIT AND ACCOUNTABILITY

1.2.17 Ensure that the --profiling argument is set to falseCIS Kubernetes v1.24 Benchmark v1.0.0 L1 MasterUnix

AUDIT AND ACCOUNTABILITY

1.2.20 Ensure that the --profiling argument is set to falseCIS Kubernetes v1.20 Benchmark v1.0.1 L1 MasterUnix

AUDIT AND ACCOUNTABILITY

1.6.4 Configure NTP AuthenticationCIS Cisco NX-OS L2 v1.0.0Cisco

AUDIT AND ACCOUNTABILITY

2.1.11 Ensure the spoofed domains report is reviewed weeklyCIS Microsoft 365 Foundations E5 L1 v3.0.0microsoft_azure

AUDIT AND ACCOUNTABILITY

2.1.12 Ensure the 'Restricted entities' report is reviewed weeklyCIS Microsoft 365 Foundations E3 L1 v3.0.0microsoft_azure

AUDIT AND ACCOUNTABILITY

2.1.13 Ensure all security threats in the Threat protection status report are reviewed at least weeklyCIS Microsoft 365 Foundations E3 L1 v3.0.0microsoft_azure

AUDIT AND ACCOUNTABILITY

2.3.1 Ensure the Account Provisioning Activity report is reviewed at least weeklyCIS Microsoft 365 Foundations E3 L1 v3.0.0microsoft_azure

AUDIT AND ACCOUNTABILITY

2.3.2 Ensure non-global administrator role group assignments are reviewed at least weeklyCIS Microsoft 365 Foundations E3 L1 v3.0.0microsoft_azure

AUDIT AND ACCOUNTABILITY

2.12.8 - Miscellaneous Config - enable sar accounting - 'activity reports are generated every 20 minutes or less on weekday 8a-5p'CIS AIX 5.3/6.1 L2 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

2.12.8 - Miscellaneous Config - enable sar accounting - 'activity reports are generated hourly on weekday 6p-7a'CIS AIX 5.3/6.1 L2 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

2.12.8 - Miscellaneous Config - enable sar accounting - 'activity reports are generated hourly on weekends'CIS AIX 5.3/6.1 L2 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

2.12.8 - Miscellaneous Config - enable sar accounting - 'daily summaries are being prepared'CIS AIX 5.3/6.1 L2 v1.1.0Unix

AUDIT AND ACCOUNTABILITY

3.1.2 Ensure user role group changes are reviewed at least weeklyCIS Microsoft 365 Foundations E3 L1 v3.0.0microsoft_azure

AUDIT AND ACCOUNTABILITY

3.2 Ensure CloudTrail log file validation is enabledCIS Amazon Web Services Foundations L2 3.0.0amazon_aws

AUDIT AND ACCOUNTABILITY

3.5 Ensure error logs are sent to a remote syslog serverCIS NGINX Benchmark v2.0.1 L2 ProxyUnix

AUDIT AND ACCOUNTABILITY

3.5 Ensure error logs are sent to a remote syslog serverCIS NGINX Benchmark v2.0.1 L2 LoadbalancerUnix

AUDIT AND ACCOUNTABILITY

3.6 Ensure access logs are sent to a remote syslog serverCIS NGINX Benchmark v2.0.1 L2 WebserverUnix

AUDIT AND ACCOUNTABILITY

3.7 Ensure proxies pass source IP informationCIS NGINX Benchmark v2.0.1 L1 ProxyUnix

AUDIT AND ACCOUNTABILITY

3.7 Ensure proxies pass source IP informationCIS NGINX Benchmark v2.0.1 L1 LoadbalancerUnix

AUDIT AND ACCOUNTABILITY

3.7 Ensure proxies pass source IP information - X-Real-IPCIS NGINX Benchmark v2.0.1 L1 LoadbalancerUnix

AUDIT AND ACCOUNTABILITY

3.7 Ensure proxies pass source IP information - X-Real-IPCIS NGINX Benchmark v2.0.1 L1 ProxyUnix

AUDIT AND ACCOUNTABILITY

3.8 Ensure Web Tier Elastic Load Balancer has application layer Health Check ConfiguredCIS Amazon Web Services Three-tier Web Architecture L1 1.0.0amazon_aws

AUDIT AND ACCOUNTABILITY

3.9 Ensure App Tier Elastic Load Balancer has application layer Health Check ConfiguredCIS Amazon Web Services Three-tier Web Architecture L1 1.0.0amazon_aws

AUDIT AND ACCOUNTABILITY

3.9 Review and Log Implied RulesCIS Check Point Firewall L2 v1.1.0CheckPoint

AUDIT AND ACCOUNTABILITY

4.2.2.1 Ensure journald is configured to send logs to rsyslogCIS Red Hat Enterprise Linux 7 STIG v2.0.0 L1 WorkstationUnix

AUDIT AND ACCOUNTABILITY

4.2.2.1 Ensure journald is configured to send logs to rsyslogCIS SUSE Linux Enterprise 15 Workstation L1 v1.1.1Unix

AUDIT AND ACCOUNTABILITY

4.2.2.1 Ensure journald is configured to send logs to rsyslogCIS SUSE Linux Enterprise 15 Server L1 v1.1.1Unix

AUDIT AND ACCOUNTABILITY

4.4 Ensure IAM policy changes are monitoredCIS Amazon Web Services Foundations L1 3.0.0amazon_aws

AUDIT AND ACCOUNTABILITY

4.5 Ensure CloudTrail configuration changes are monitoredCIS Amazon Web Services Foundations L1 3.0.0amazon_aws

AUDIT AND ACCOUNTABILITY

4.11 Ensure Network Access Control Lists (NACL) changes are monitoredCIS Amazon Web Services Foundations L2 3.0.0amazon_aws

AUDIT AND ACCOUNTABILITY

4.15 Ensure AWS Organizations changes are monitoredCIS Amazon Web Services Foundations L1 3.0.0amazon_aws

AUDIT AND ACCOUNTABILITY

5.1.5.1 Ensure the Application Usage report is reviewed at least weeklyCIS Microsoft 365 Foundations E3 L1 v3.0.0microsoft_azure

AUDIT AND ACCOUNTABILITY

5.2.4.2 Ensure the self-service password reset activity report is reviewed at least weeklyCIS Microsoft 365 Foundations E3 L1 v3.0.0microsoft_azure

AUDIT AND ACCOUNTABILITY

5.2.6.1 Ensure the Azure AD 'Risky sign-ins' report is reviewed at least weeklyCIS Microsoft 365 Foundations E5 L1 v3.0.0microsoft_azure

AUDIT AND ACCOUNTABILITY

6.1.2 Configuring syslog - remote logging - *.info;auth.none in /etc/syslog.confCIS IBM AIX 7.1 L2 v2.1.0Unix

AUDIT AND ACCOUNTABILITY

6.1.3 Configuring syslog - remote messages - remote messagesCIS IBM AIX 7.1 L2 v2.1.0Unix

AUDIT AND ACCOUNTABILITY

6.4.1 Ensure mail forwarding rules are reviewed at least weeklyCIS Microsoft 365 Foundations E3 L1 v3.0.0microsoft_azure

AUDIT AND ACCOUNTABILITY

7.16 Unified loggingCIS Apple macOS 10.12 L1 v1.2.0Unix

AUDIT AND ACCOUNTABILITY

8.1.18 Make the Audit Configuration ImmutableCIS Debian Linux 7 L2 v1.0.0Unix

AUDIT AND ACCOUNTABILITY

20.13 Ensure 'Audit records must be backed up to a different system or media than the system being audited'CIS Microsoft Windows Server 2016 STIG DC STIG v1.1.0Windows

AUDIT AND ACCOUNTABILITY

20.13 Ensure 'Audit records must be backed up to a different system or media than the system being audited'CIS Microsoft Windows Server 2019 STIG DC STIG v1.0.1Windows

AUDIT AND ACCOUNTABILITY

20.38 Ensure 'Off-load of audit records of interconnected systems in real time and off-load standalone systems weekly'CIS Microsoft Windows Server 2019 STIG DC STIG v1.0.1Windows

AUDIT AND ACCOUNTABILITY

20.39 Ensure 'Off-load of audit records of interconnected systems in real time and off-load standalone systems weekly'CIS Microsoft Windows Server 2016 STIG DC STIG v1.1.0Windows

AUDIT AND ACCOUNTABILITY

20.39 Ensure 'Off-load of audit records of interconnected systems in real time and off-load standalone systems weekly'CIS Microsoft Windows Server 2016 STIG MS STIG v1.1.0Windows

AUDIT AND ACCOUNTABILITY

FireEye - Greylist URL listTNS FireEyeFireEye

AUDIT AND ACCOUNTABILITY

FireEye - Reports are run on a scheduleTNS FireEyeFireEye

AUDIT AND ACCOUNTABILITY

FireEye - Web-analysis incident listTNS FireEyeFireEye

AUDIT AND ACCOUNTABILITY

FireEye - Workorder statsTNS FireEyeFireEye

AUDIT AND ACCOUNTABILITY