This product has charges associated with it for security hardening. Deploy-ready Ubuntu 24.04 LTS AMI with advanced security hardening mapped to NIST CSF, PCI DSS, and HIPAA for DevSecOps teams needing audit-ready infrastructure.
This is a repackaged open source software product. Additional charges apply for the security hardening applied to the base Ubuntu 24.04 LTS image.
Eliminate weeks of manual OS hardening and compliance configuration. This pre-hardened Ubuntu 24.04 LTS AMI launches on AWS EC2 with advanced security controls already applied, giving DevSecOps engineers, IT security administrators, and compliance teams an audit-ready baseline from day one.
Compliance mapping to NIST Cybersecurity Framework (CSF), ISO 27000 series, PCI DSS, and HIPAA
Stringent access controls including SSH hardening, restricted user permissions, and least-privilege configurations
Kernel and network hardening with optimized system parameters to reduce attack surface
Regular security updates to address emerging vulnerabilities
Robust audit logging configurations for compliance evidence collection
Who This Is For
This AMI is built for teams that need production-ready, compliance-aligned infrastructure without spending weeks on manual hardening:
Healthcare organizations deploying HIPAA-compliant EC2 instances for sensitive workloads
Financial services teams requiring PCI DSS-aligned server images for payment processing infrastructure
DevSecOps engineers who need a hardened golden image for CI/CD pipelines and automated deployments
Compliance officers seeking pre-validated baselines that map to multiple regulatory frameworks
AWS Integration
This hardened AMI is designed to work within your existing AWS ecosystem:
AWS Systems Manager - Use for patch management and configuration compliance monitoring
Amazon CloudWatch - Monitor system health, performance metrics, and security events
AWS Inspector - Run vulnerability assessments to validate hardening effectiveness
Amazon EC2 - Deploy across supported instance types in any AWS region
Security Hardening Details
Level 2 Advanced Hardening goes beyond foundational security to address more sophisticated and persistent threats. The hardening process limits potential weaknesses that make systems vulnerable to cyberattacks by:
Reducing attack surfaces through disabling unnecessary services and protocols
Enforcing access controls to protect against unauthorized access and denial of service
Protecting Confidentiality, Integrity, and Availability (CIA triad) through layered security controls
Applying configurations that map to established standards and regulatory frameworks
About Madarson IT
Madarson IT certified images are always up to date, secure, follow industry standards, and are built to work right out of the box. Madarson IT publishes hardened and customized images across AWS, GCP, and Azure Marketplaces, demonstrating cross-cloud expertise in secure image delivery.
Important Notes
Organizations may need to customize configurations based on their specific security requirements and risk profile beyond the baseline provided.
Application-layer security (databases, web servers, custom applications) is the responsibility of the deploying team.
Disclaimer: Canonical Ltd. owns the trademarks for Ubuntu and its associated branding. Madarson IT does not provide commercial licenses on any third-party product.
Highlights
Compliance-mapped hardening aligned to NIST CSF, ISO 27000, PCI DSS, and HIPAA frameworks. Level 2 Advanced Hardening applies stringent access controls, kernel hardening, network security configurations, and audit logging to help organizations meet regulatory requirements. Deploy on AWS EC2 and integrate with AWS Systems Manager, Amazon CloudWatch, and AWS Inspector for ongoing compliance monitoring and vulnerability assessment.
Launch-ready security baseline that eliminates weeks of manual OS hardening. This pre-configured Ubuntu 24.04 LTS AMI deploys with advanced security controls already applied - no post-launch hardening scripts required. Ideal for DevSecOps teams building golden images, healthcare organizations needing HIPAA-compliant infrastructure, or financial services teams requiring PCI DSS-aligned server baselines.
Reduced attack surface through systematic hardening of the Ubuntu 24.04 LTS operating system. Unnecessary services and protocols are disabled, user permissions follow least-privilege principles, and system parameters are optimized to protect against unauthorized access, denial of service, and advanced persistent threats. Regular security updates ensure ongoing protection against emerging vulnerabilities.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
You pay by the hour for this hardened Ubuntu 24.04 image, billed per running instance. Pricing is not tiered by feature. Instead, each dimension maps to a specific EC2 instance type, so your rate depends on the compute size you pick. Options span general-purpose (m, t families), compute-optimized (c families), memory-optimized (r families), storage (d families), graphics (g5), and high-memory (u families). Smaller instances like t2.small carry lower hourly rates; larger instances like u7in-16tb.224xlarge cost more per hour. You scale cost by choosing instance size and running time.
Top-of-mind questions for buyers
Am I charged for the software when an instance is stopped or powered off?
The hourly rate meters running instance-hours only. A fully stopped instance does not accrue the software charge. You may still pay underlying AWS charges, such as storage for the attached volume, but the hardened image fee applies only while the instance runs.
What does the hourly charge cover beyond a plain Ubuntu 24.04 image?
The rate covers a hardened Ubuntu 24.04 image at the Level 2: Advanced Hardening configuration. It aligns with DISA STIG, PCI-DSS, HIPAA, and NIST frameworks. Images are validated and updated with security patches on an ongoing basis, not delivered as a one-time snapshot.
If I change to a larger instance type, how does my hourly cost change?
Each dimension maps to one EC2 instance type. Moving to a different instance type applies that type's hourly rate for every hour it runs. There is no tier boundary or automatic upgrade. Your bill reflects the instance type you launch and the hours it stays running.
madarsonit.com
Helpful?
Vendor refund policy
There is no refund policy for this image.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
For questions about this hardened Ubuntu 24.04 LTS AMI, including configuration assistance, compliance inquiries, private offers, or audit support, contact the Madarson IT team at info@madarsonit.com.
Support Scope
Madarson IT provides support for issues related to the hardening configurations applied to this AMI, compliance mapping questions, and guidance on customizing the security baseline for your specific requirements.
Please include your AWS account ID and instance details when reaching out to help expedite resolution of technical issues.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
This product has charges associated with it for security hardening. Launch a pre-configured Ubuntu 24.04 LTS EC2 instance that ships with Armorbytes hardened baseline.
This integrated image provides a stable and secure operating system with an enterprise-class relational database. SQL Server 2022 Standard runs natively on Linux, delivering high performance, built-in security, and advanced business intelligence capabilities. This product wherein additional charges apply for support provided by Galaxys.
Key Features:
Ubuntu Server 22.04 LTS operating system with long-term support.
Fully featured SQL Server 2022 Standard on Linux.
Enhanced security with Secure Enclaves and Always Encrypted.
High availability and disaster recovery with Always On Availability Groups.
Integration with Azure data and intelligence services.
Unified management across Windows, Linux, and containers.
Ideal platform for enterprise applications, data marts, and departmental servers.
This product has charges associated with it for seller support. osTicket is an open-source help desk and ticketing system designed to streamline customer support operations. It provides an efficient way to manage, organize, and archive support requests, improving the overall customer service experience.
This product has charges associated with it for seller support. osTicket is an open-source help desk and ticketing system designed to streamline customer support operations. It provides an efficient way to manage, organize, and archive support requests, improving the overall customer service experience.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.