This product has charges associated with it for security hardening and compliance alignment. Madarson IT pre-hardened Windows Server 2022 AMI helps compliance teams achieve audit-readiness on day one, eliminating manual hardening for NIST CSF, PCI DSS, and HIPAA workloads.
Madarson IT Hardened Windows Server 2022 - Foundational Security AMI
This is a repackaged software product wherein additional charges apply for security hardening, compliance alignment, and ongoing maintenance of this image.
Eliminate manual hardening and achieve compliance-ready Windows Server deployments from day one. This pre-configured AMI applies foundational hardening controls to the latest Windows Server 2022 Base image, giving compliance officers, IT administrators, and DevOps engineers a secure baseline that maps to established regulatory frameworks.
Who This Is For
This hardened AMI is built for organizations in regulated industries that need audit-ready infrastructure without weeks of manual configuration:
Healthcare organizations deploying HIPAA-compliant workloads that require documented security baselines
Retailers and financial services firms needing PCI DSS-ready servers for payment processing environments
Government agencies and contractors aligning to NIST Cybersecurity Framework requirements
Enterprise IT teams seeking to reduce attack surface across Windows Server fleets
Key Features
Foundational Security Hardening - Pre-applied OS-level security controls based on hardening recommendations for Windows Server 2022
Compliance Framework Mapping - Hardening controls map to NIST Cybersecurity Framework (CSF), ISO 27000 series, PCI DSS, HIPAA, and other regulatory standards
Regular Updates - Images are maintained with current patches and hardening rule updates to address emerging vulnerabilities
Reduced Attack Surface - Disabled unnecessary protocols, services, and features that create potential entry points for cyberattacks
Compliance Mappings
The hardening configuration addresses controls across multiple frameworks:
NIST Cybersecurity Framework (CSF)
ISO 27000 series
PCI DSS
HIPAA Security Rule
Deployment Overview
Launch this AMI from AWS Marketplace and connect via RDP to a pre-hardened Windows Server 2022 environment. The hardening is applied at the OS level, covering security policies, registry settings, audit configurations, and service restrictions. Post-launch, organizations may need to customize settings based on their specific requirements, such as domain join configurations, application-specific exceptions, or additional Group Policy Objects.
Important Considerations
This foundational hardened image establishes a baseline level of security and reduces risk exposure to common cyber threats. Organizations should consider this as a starting point and may need to:
Apply additional application-layer hardening based on workload requirements
Configure network security groups and VPC settings appropriate to their environment
Implement additional monitoring and logging based on their compliance program
Review and adjust hardening controls that may conflict with specific application requirements
Why Madarson IT
Madarson IT certified images are always up to date, secure, follow industry standards, and are built to work right out of the box. Our hardening process helps protect against unauthorized access, denial of service, and other cyber threats by systematically limiting potential weaknesses that make systems vulnerable to cyberattacks.
Disclaimer: Windows Server is a trademark of Microsoft Corporation. This offering is provided by Madarson IT and is not affiliated with, endorsed by, or sponsored by Microsoft Corporation.
Highlights
Foundational hardening controls pre-applied to Windows Server 2022, mapping to NIST Cybersecurity Framework, ISO 27000, PCI DSS, and HIPAA. Organizations in healthcare, financial services, and government can deploy audit-ready infrastructure without weeks of manual configuration, establishing a documented security baseline from the first launch.
Reduced attack surface through systematic disabling of unnecessary services, protocols, and features. Stringent access controls enforce secure authentication settings and limit administrative access paths, helping protect against unauthorized access, denial of service, and other cyber threats that exploit default Windows Server configurations.
Regularly updated and maintained by Madarson IT to address emerging vulnerabilities and evolving hardening requirements. Images are built to work out of the box, allowing compliance teams and IT administrators to focus on application-layer requirements rather than spending time on foundational OS-level security hardening tasks.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
You pay by the hour for this hardened Windows Server 2022 image, billed per running instance. Pricing is not tiered. Instead, each dimension maps to a specific AWS EC2 instance type, and your rate depends on which one you launch. Options span general-purpose (m-, t-series), compute-optimized (c-series), memory-optimized (r-, x-series), storage-optimized (i-, d-series), GPU (g-, p-series), and high-performance computing (hpc-series) families. Larger instances with more CPU, memory, or GPU carry higher hourly rates. You can run multiple instance types at once, and charges accrue only while each instance runs.
Top-of-mind questions for buyers
What does one billed hour cover for this hardened Windows Server 2022 image?
One hour equals one running instance of your chosen EC2 instance type. Charges accrue per instance while it runs. Each instance you launch is metered separately. Running two instances at once meters two sets of hourly charges on the same invoice.
Am I charged for instances that are stopped or powered off?
The software charge meters running instance-hours only. Stopped or powered-off instances do not accrue the hourly software fee. Note that underlying AWS storage costs may still apply while an instance is stopped, but those are separate from this listing's software rate.
What do I get with the hardened image itself, regardless of which instance type I pick?
You get a security-hardened Windows Server 2022 image with Level 1 Foundational configurations. It aligns with DISA STIG, PCI-DSS, HIPAA, and NIST frameworks. Images are validated and updated regularly with security patches, so you deploy a pre-configured, compliance-aligned instance rather than hardening it yourself.
madarsonit.com
Helpful?
Vendor refund policy
There is no refund policy for this image.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Hardened Windows Server 2022 Base image with Level 1: Foundational.
Additional details
Usage instructions
Allow RDP access in your security group
Access the ec2 with the username: Administrator
To connect to the Instance:
Allow inbound RDP access in your security group (TCP port 3389)
Sign in to the AWS Management Console, open the Amazon EC2 console, and choose your Windows Server instance.
Then, select Connect, then Get Password, and then Choose File (private key of the ec2 instance).
Connect to the instance: Use Remote Desktop Connection (RDP) to connect to the instance.
Access the ec2 with the default username: "Administrator" and the password provided
You can also use Systems Manager (SSM) to access the Windows ec2 instance
For questions about this hardened Windows Server 2022 AMI, including configuration assistance, compliance inquiries, or private offers, contact Madarson IT at info@madarsonit.com.
Support scope includes:
Questions about the hardening configuration and applied controls
Guidance on customizing hardening settings for your specific environment
Private offer requests for volume deployments
Compliance and audit consultation needs
Troubleshooting hardening-related issues
When contacting support, please include your AWS account ID and the instance ID of the affected deployment.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
This product has charges associated with it for security hardening and compliance alignment. Madarson IT hardened Windows Server 2022 AMI - pre-configured for NIST CSF, PCI DSS, and HIPAA compliance. Deploy a security-optimized EC2 instance ready for regulated workloads.
This product has charges associated with it for security hardening and compliance alignment. Madarson IT pre-hardened Windows Server 2019 AMI - deploy audit-ready EC2 instances mapped to NIST CSF, PCI DSS, and HIPAA frameworks in minutes.
This product has charges associated with it for STIG security hardening. AWS EC2 image based on the latest Windows Server 2022 Base build, pre-configured to support DISA STIG compliance. Designed for U.S. Government, Department of Defense, and federal contractor workloads where elevated security baselines and the standard DoD warning banner are required from day one.
This product has charges associated with it for security hardening and compliance alignment. Madarson IT pre-hardened Windows Server 2019 AMI with advanced security controls applied - deploy audit-ready EC2 instances mapped to NIST CSF, PCI DSS, and HIPAA from day one.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.