MASTER
COMPLIANCE
With 33+ global compliances and comprehensive Compliance support, we enable our customers to operate with greater confidence in a complex threat landscape.
ASD Essential Eight Maturity Model – Maturity Level One (AWS)
- Industry
- Australia
Australian cybersecurity framework defining foundational mitigation strategies to protect organisations against common cyber threats.
Coverage
Assesses AWS configurations related to access controls, privileged access, system hardening, patching, authentication, application security, and data protection.
AWS AI Security Framework 1
- AI/ML Companies
- Global
Security framework focused on helping organizations secure AI workloads, models, and supporting AWS infrastructure throughout the AI lifecycle.
Coverage
Assesses AWS configurations related to identity and access management, data protection, model security, logging, network security, encryption, and monitoring for AI environments.
AWS Audit Manager Control Tower Guardrails
- General
- Global
Framework focused on evaluating AWS Control Tower guardrails and AWS Audit Manager controls to help organizations maintain secure, well-governed AWS environments.
Coverage
Assesses AWS configurations related to access controls, privileged access, system hardening, patching, authentication, application security, and data protection.
AWS Well-Architected Framework – Reliability Pillar
- Industry
- Australia
AWS Well-Architected Framework pillar focused on building resilient cloud workloads that can recover from failures, scale effectively, and maintain consistent availability.
Coverage
Assesses AWS configurations related to fault tolerance, backup and recovery, monitoring, workload resilience, service quotas, and high availability.
AWS Foundational Security Best Practices
- General
- Global
AWS security best practice standard that helps organizations establish and maintain a secure foundation for their AWS environments using recommended security controls.
Coverage
Assesses AWS configurations related to identity and access management, logging, encryption, network security, monitoring, data protection, and security best practices.
AWS Well-Architected Framework – Security Pillar
- General
- Global
AWS Well-Architected Framework pillar focused on protecting cloud workloads through security best practices, risk management, and continuous monitoring.
Coverage
Assesses AWS configurations related to identity and access management, data protection, infrastructure security, logging, threat detection, and security monitoring.
Cloud Computing Compliance Criteria Catalogue (C5) 2025
- General
- Germany
German cloud security framework developed by the Federal Office for Information Security (BSI) to define baseline security requirements for cloud service providers.
Coverage
Assesses cloud configurations related to identity and access management, encryption, logging, network security, data protection, operational security, and compliance controls.
AWS Foundational Technical Review
- General
- Global
AWS technical assessment framework that evaluates cloud environments against foundational architecture, operational, and security best practices to improve reliability and readiness.
Coverage
Assesses AWS configurations related to security, networking, identity and access management, monitoring, operational excellence, resilience, and infrastructure best practices.
CIS Amazon Web Services Foundations Benchmark
- General
- Global
- v1.4.0
- v1.5.0
- v2.0.0
- v4.0.1
- v5.0.0
- v6.0.0
- v7.0.0
Security benchmark developed by the Center for Internet Security (CIS) that provides prescriptive best practices for securely configuring AWS environments.
Coverage
Assesses AWS configurations related to identity and access management, logging, monitoring, networking, storage security, encryption, and account-level security best practices.
Common Cloud Controls Catalog (CCC) v2025.10
- General
- Global
Vendor-neutral cloud security framework that provides a standardized set of security controls to help organizations assess and secure cloud environments consistently.
Coverage
Assesses cloud configurations related to identity and access management, network security, encryption, logging, data protection, monitoring, and governance controls.
CIS Controls v8.1
- General
- Global
Globally recognized cybersecurity framework developed by the Center for Internet Security (CIS) that provides prioritized best practices to defend against common cyber threats.
Coverage
Assesses cloud configurations related to identity and access management, asset management, secure configuration, vulnerability management, logging, monitoring, data protection, and access controls.