Posted On: Mar 22, 2021

AWS Audit Manager now supports the CIS Benchmark for CIS Amazon Web Services Foundations Benchmark v1.3.0, Level 1 and 2 as a new prebuilt standard framework. This framework adds to the existing prebuilt frameworks provided in Audit Manager. With this release, you can launch an assessment from this framework with just a few clicks. Audit Manager will map your AWS resources to the requirements in the CIS AWS Foundations Benchmark and start gathering evidence automatically to help you scale your audit capability in the cloud as your business grows.

The CIS Benchmark for CIS AWS Foundations Benchmark v1.3.0, Level 1 and 2 is developed by the Center for Internet Security (CIS). This framework contains a set of security configuration best practices for AWS. These industry-accepted best practices go beyond the high-level security guidance already available, providing AWS users with clear, step-by-step implementation and assessment procedures. In this framework. Audit Manager provides automated evidence collection for

  • 49 out of 55 total controls for Level 1 and Level 2
  • 33 out of 38 total controls for Level 1

This release is now available in all AWS Regions where AWS Audit Manager is offered. To learn more, see the CIS Benchmark for CIS Amazon Web Services Foundations Benchmark v1.3.0, Level 1 and 2 user guide in AWS Audit Manager documentation.