Overview
The CIS Hardened Image Level 1 on Amazon Linux 2023 for AWS Parallel Compute Service (PCS) provides an enterprise-ready foundation for high-performance computing (HPC) and distributed AI workloads. This image is pre-configured to meet CIS Benchmark™ Level 1 security standards while maintaining compatibility with AWS PCS. It eliminates the friction between high-performance throughput and rigorous regulatory compliance.
AWS PCS provides a fully managed HPC environment, allowing you to run large-scale simulations and AI/ML workloads without the operational "tax" of maintaining the underlying infrastructure. It bridges the gap between traditional High-Performance Computing (HPC) and modern AI by using the Slurm scheduler to orchestrate GPU-intensive tasks.
Not only is this image pre-hardened to the CIS Benchmarks guidance, but it is also patched monthly in alignment with the updates from the software vendor.
Highlights
- Hardened according to a Level 1 CIS Benchmark that is developed in a consensus-based process and that is accepted by government, business, industry, and academia.
- Using an AMI hardened by CIS reduces time, cost, and risk associated with your organization's AWS solution.
- Pre-configured to align with industry best practices that are developed and supported by CIS, this image has hardened account and local policies, firewall configuration, and computer-based and user-based administrative templates.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Financing for AWS Marketplace purchases
Pricing
Dimension | Cost/hour |
|---|---|
c7a.large Recommended | $0.022 |
t2.micro | $0.022 |
m5a.large | $0.022 |
r7a.medium | $0.022 |
t2.nano | $0.022 |
g6f.large | $0.022 |
m6a.large | $0.022 |
c6in.large | $0.022 |
c7i.large | $0.022 |
c5ad.large | $0.022 |
Vendor refund policy
Refunds through AWS are not available at this time. You will only be billed for actual time of instance use. As with all CIS security products, our aim is always 100 percent customer/member satisfaction.
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
64-bit (x86) Amazon Machine Image (AMI)
Amazon Machine Image (AMI)
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
Initial release of CIS Hardened Image Level 1 Amazon Linux 2023 for Parallel Compute Service utilizing PCS Agent v1.3.2 and Slurm Controller v25.05
Additional details
Usage instructions
- Subscribe to the CIS Hardened AMI - From AWS Marketplace, click "Subscribe" and accept the terms. The image will appear in your account Subscriptions/Marketplace images.
- Create a custom AMI (recommended: EC2 Image Builder) - In EC2 Image Builder, create an image recipe and choose Marketplace images as the base; select your subscribed CIS AL2023 PCS-Ready AMI from the Subscriptions list. Add components or customizations (for example packages such as Lustre client, GPU drivers, users, SSH keys). Not this image is "PCS-ready" natively and there is no need to install the PCS Agent or Slurm Controller however it is recommended users apply all relevant patches/updates that may have released after image was built. A
- Validate - At this step we recommend validating the image for stability and functionality.
- Register and use the AMI with PCS - In the PCS console or templates, reference the custom AMI ID for compute nodes. Configure launch templates, IAM roles, and networking per PCS guidance . Launch a small test cluster, run a sample job, and confirm node registration with the PCS controller. Reference this AWS document on how to utilize a custom AMI in a PCS compute node group: https://docs.aws.amazon.com/pcs/latest/userg5uide/working-with_ami_custom_use-ami.html 5 - Confirm nodes are able to connect to cluster.
Support
Vendor support
Questions, feedback, and support accessing CIS-developed AMIs is provided by contacting
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.