AWS Misconfigurations
KMS Audit
Checks performed
- App-tier KMS Key Should Be In Use
- KMS Keys Should Not Allow Unknown Cross Account Access
- Database-tier KMS Key Should Be In Use
- KMS Keys Should Not Be Exposed
- KMS Key Rotation Should Be Enabled
- KMS Customer Master Key Should Be In Use
- KMS Key Policies Should Be Designed To Limit Number Of KMS Admins
- KMS Keys Scheduled For Deletion Should Be Recovered
- Secrets Manager Should Be In Use
- Secret Manager Secrets Rotation Enabled
- Secrets Manager Secrets Should Be Rotated Frequently
- Existence of specific AWS KMS CMKs
- Existence Of Specific AWS KMS CMKs
- Unused Customer Master Key Should Be Removed
- Web-tier KMS Key Should Be In Use
- Secrets Manager Secrets Should Be Encrypted With CMKs
- Secrets Manager Secrets Rotation Enabled
- Secrets Manager Secrets Rotation Enabled
- Secrets Manager Should Be In Use