Security checks

Every AWS security check KloudLytics runs

262 checks across 49 AWS services. Each has its own page: what it finds, why it matters, how to fix it, and which compliance controls it is evidence for. This list is generated from the catalogue the scanner uses, so it is the list, not a sample of it.

  • 15 critical
  • 69 high
  • 92 medium
  • 73 low
  • 13 info

IAM 36 checks

RDS 25 checks

EC2 22 checks

Secrets exposure 19 checks

Bedrock 17 checks

Monitoring and alarms 14 checks

S3 12 checks

API Gateway 10 checks

CloudTrail 10 checks

SageMaker 7 checks

AWS WAF 6 checks

Elastic Load Balancing 6 checks

Lambda 6 checks

Security groups 6 checks

VPC 5 checks

Tagging 4 checks

ACM 3 checks

CloudWatch 3 checks

Cognito 3 checks

DynamoDB 3 checks

ElastiCache 3 checks

KMS 3 checks

Redshift 3 checks

Route 53 3 checks

Secrets Manager 3 checks

Systems Manager 3 checks

ECR 2 checks

ECS 2 checks

IAM Access Analyzer 2 checks

Security Hub 2 checks

Application Load Balancer 1 check

Auto Scaling 1 check

Billing 1 check

CloudFront 1 check

Config 1 check

DMS 1 check

Data protection 1 check

EBS 1 check

EFS 1 check

EKS 1 check

Glacier 1 check

GuardDuty 1 check

Lightsail 1 check

OpenSearch 1 check

Resilience 1 check

SNS 1 check

SQS 1 check

Threat detection 1 check

Vulnerability management 1 check

Find out what is actually exposed in your AWS environment.

Connect one AWS account and run your first security assessment.

No credit card · Agentless · Read-only