Item Search

NameAudit NamePluginCategory
1.2.17 Ensure that the --profiling argument is set to falseCIS Kubernetes v1.23 Benchmark v1.0.1 L1 MasterUnix

AUDIT AND ACCOUNTABILITY

1.2.17 Ensure that the --profiling argument is set to falseCIS Kubernetes v1.24 Benchmark v1.0.0 L1 MasterUnix

AUDIT AND ACCOUNTABILITY

1.2.20 Ensure that the --profiling argument is set to falseCIS Kubernetes v1.20 Benchmark v1.0.1 L1 MasterUnix

AUDIT AND ACCOUNTABILITY

2.1 Ensure monitoring and alerting exist for ACCOUNTADMIN and SECURITYADMIN role grantsCIS Snowflake Foundations v1.0.0 L1Snowflake

AUDIT AND ACCOUNTABILITY

2.1.11 Ensure the spoofed domains report is reviewed weeklyCIS Microsoft 365 Foundations E5 L1 v3.1.0microsoft_azure

AUDIT AND ACCOUNTABILITY

2.1.12 Ensure the 'Restricted entities' report is reviewed weeklyCIS Microsoft 365 Foundations E3 L1 v3.1.0microsoft_azure

AUDIT AND ACCOUNTABILITY

2.1.13 Ensure malware trends are reviewed at least weeklyCIS Microsoft 365 Foundations E3 L1 v3.1.0microsoft_azure

AUDIT AND ACCOUNTABILITY

2.2 Ensure monitoring and alerting exist for MANAGE GRANTS privilege grantsCIS Snowflake Foundations v1.0.0 L1Snowflake

AUDIT AND ACCOUNTABILITY

2.3 Ensure monitoring and alerting exist for password sign-ins of SSO usersCIS Snowflake Foundations v1.0.0 L1Snowflake

AUDIT AND ACCOUNTABILITY

2.3.1 Ensure the Account Provisioning Activity report is reviewed at least weeklyCIS Microsoft 365 Foundations E3 L1 v3.1.0microsoft_azure

AUDIT AND ACCOUNTABILITY

2.3.2 Ensure non-global administrator role group assignments are reviewed at least weeklyCIS Microsoft 365 Foundations E3 L1 v3.1.0microsoft_azure

AUDIT AND ACCOUNTABILITY

2.4 Ensure monitoring and alerting exist for password sign-in without MFACIS Snowflake Foundations v1.0.0 L1Snowflake

AUDIT AND ACCOUNTABILITY

2.5 Ensure monitoring and alerting exist for creation, update and deletion of security integrationsCIS Snowflake Foundations v1.0.0 L1Snowflake

AUDIT AND ACCOUNTABILITY

2.6 Ensure monitoring and alerting exist for changes to network policies and associated objectsCIS Snowflake Foundations v1.0.0 L1Snowflake

AUDIT AND ACCOUNTABILITY

2.7 Ensure monitoring and alerting exist for SCIM token creationCIS Snowflake Foundations v1.0.0 L1Snowflake

AUDIT AND ACCOUNTABILITY

2.8 Ensure monitoring and alerting exists for new share exposuresCIS Snowflake Foundations v1.0.0 L1Snowflake

AUDIT AND ACCOUNTABILITY

2.9 Ensure monitoring and alerting exists for sessions from unsupported Snowflake Connector for Python and JDBC and ODBC driversCIS Snowflake Foundations v1.0.0 L2Snowflake

AUDIT AND ACCOUNTABILITY

3.1 (L1) Ensure a centralized location is configured to collect ESXi host core dumpsCIS VMware ESXi 7.0 v1.4.0 L1 Bare MetalUnix

AUDIT AND ACCOUNTABILITY

3.1 Ensure a centralized location is configured to collect ESXi host core dumpsCIS VMware ESXi 6.7 v1.3.0 Level 1 Bare MetalUnix

AUDIT AND ACCOUNTABILITY

3.1.2 Ensure user role group changes are reviewed at least weeklyCIS Microsoft 365 Foundations E3 L1 v3.1.0microsoft_azure

AUDIT AND ACCOUNTABILITY

3.2 Ensure CloudTrail log file validation is enabledCIS Amazon Web Services Foundations v4.0.1 L2amazon_aws

AUDIT AND ACCOUNTABILITY

3.5 Ensure error logs are sent to a remote syslog serverCIS NGINX Benchmark v2.1.0 L2 ProxyUnix

AUDIT AND ACCOUNTABILITY

3.5 Ensure error logs are sent to a remote syslog serverCIS NGINX Benchmark v2.1.0 L2 LoadbalancerUnix

AUDIT AND ACCOUNTABILITY

3.5 Ensure error logs are sent to a remote syslog serverCIS NGINX Benchmark v2.1.0 L2 WebserverUnix

AUDIT AND ACCOUNTABILITY

3.6 Ensure access logs are sent to a remote syslog serverCIS NGINX Benchmark v2.1.0 L2 WebserverUnix

AUDIT AND ACCOUNTABILITY

3.6 Ensure access logs are sent to a remote syslog serverCIS NGINX Benchmark v2.1.0 L2 LoadbalancerUnix

AUDIT AND ACCOUNTABILITY

3.6 Ensure access logs are sent to a remote syslog serverCIS NGINX Benchmark v2.1.0 L2 ProxyUnix

AUDIT AND ACCOUNTABILITY

3.7 Ensure proxies pass source IP information - X-Real-IPCIS NGINX Benchmark v2.1.0 L1 LoadbalancerUnix

AUDIT AND ACCOUNTABILITY

3.7 Ensure proxies pass source IP information - X-Real-IPCIS NGINX Benchmark v2.1.0 L1 ProxyUnix

AUDIT AND ACCOUNTABILITY

3.8 Ensure Web Tier Elastic Load Balancer has application layer Health Check ConfiguredCIS Amazon Web Services Three-tier Web Architecture L1 1.0.0amazon_aws

AUDIT AND ACCOUNTABILITY

3.9 Ensure App Tier Elastic Load Balancer has application layer Health Check ConfiguredCIS Amazon Web Services Three-tier Web Architecture L1 1.0.0amazon_aws

AUDIT AND ACCOUNTABILITY

3.9 Review and Log Implied RulesCIS Check Point Firewall L2 v1.1.0CheckPoint

AUDIT AND ACCOUNTABILITY

4.2.2.1 Ensure journald is configured to send logs to rsyslogCIS Red Hat Enterprise Linux 7 STIG v2.0.0 L1 WorkstationUnix

AUDIT AND ACCOUNTABILITY

4.7 (L1) Host must configure a persistent log location for all locally stored audit recordsCIS VMware ESXi 8.0 v1.1.0 L1VMware

AUDIT AND ACCOUNTABILITY

5.1.5.1 Ensure the Application Usage report is reviewed at least weeklyCIS Microsoft 365 Foundations E3 L1 v3.1.0microsoft_azure

AUDIT AND ACCOUNTABILITY

5.2.4.2 Ensure the self-service password reset activity report is reviewed at least weeklyCIS Microsoft 365 Foundations E3 L1 v3.1.0microsoft_azure

AUDIT AND ACCOUNTABILITY

5.2.6.1 Ensure the Azure AD 'Risky sign-ins' report is reviewed at least weeklyCIS Microsoft 365 Foundations E5 L1 v3.1.0microsoft_azure

AUDIT AND ACCOUNTABILITY

6.1.2 Configuring syslog - remote logging - *.info;auth.none in /etc/syslog.confCIS IBM AIX 7.1 L2 v2.1.0Unix

AUDIT AND ACCOUNTABILITY

6.1.2 Configuring syslog - remote logging - auth.info in /etc/syslog.confCIS IBM AIX 7.1 L2 v2.1.0Unix

AUDIT AND ACCOUNTABILITY

6.1.3 Configuring syslog - remote messages - remote messagesCIS IBM AIX 7.1 L2 v2.1.0Unix

AUDIT AND ACCOUNTABILITY

6.4.1 Ensure mail forwarding rules are reviewed at least weeklyCIS Microsoft 365 Foundations E3 L1 v3.1.0microsoft_azure

AUDIT AND ACCOUNTABILITY

6.5 Ensure that Remote Syslog Servers are configuredCIS F5 Networks v1.0.0 L1F5

AUDIT AND ACCOUNTABILITY

7.16 Unified loggingCIS Apple macOS 10.12 L1 v1.2.0Unix

AUDIT AND ACCOUNTABILITY

8.1.18 Make the Audit Configuration ImmutableCIS Debian Linux 7 L2 v1.0.0Unix

AUDIT AND ACCOUNTABILITY

20.13 Ensure 'Audit records must be backed up to a different system or media than the system being audited'CIS Microsoft Windows Server 2019 STIG v3.0.0 STIG MSWindows

AUDIT AND ACCOUNTABILITY

20.13 Ensure 'Audit records must be backed up to a different system or media than the system being audited'CIS Microsoft Windows Server 2019 STIG v3.0.0 STIG DCWindows

AUDIT AND ACCOUNTABILITY

20.39 Ensure 'Off-load of audit records of interconnected systems in real time and off-load standalone systems weekly'CIS Microsoft Windows Server 2016 STIG v3.0.0 STIG DCWindows

AUDIT AND ACCOUNTABILITY

20.39 Ensure 'Off-load of audit records of interconnected systems in real time and off-load standalone systems weekly'CIS Microsoft Windows Server 2016 STIG v3.0.0 STIG MSWindows

AUDIT AND ACCOUNTABILITY

20.39 Ensure 'Off-load of audit records of interconnected systems in real time and off-load standalone systems weekly'CIS Microsoft Windows Server 2019 STIG v3.0.0 STIG DCWindows

AUDIT AND ACCOUNTABILITY

FireEye - Reports are run on a scheduleTNS FireEyeFireEye

AUDIT AND ACCOUNTABILITY