Skip to content

Why does the CIS AWS Foundations Benchmark package cost additional money? #69

Discussion options

You must be logged in to vote

Our reference architecture and the CIS compliance repo are certified by CIS. We pay a membership fee to CIS. We also maintain the code according to the latest version of the Benchmark and provide migration guides (see here and here, for example). It’s actually possible to achieve CIS compliance with the library without the CIS package; all the modules have the features available. However, it’s faster and thus more cost effective to use our dedicated compliance repo with all the wrapper modules.

One example here is to flush out what CIS actually requires. Yes, setting up MFA delete is a requirement, but:

  1. Even this one requirement is harder than it looks. That’s because Terraform doesn’t s…

Replies: 1 comment

Comment options

You must be logged in to vote
0 replies
Answer selected by marijakstrazdas
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Sales
Labels
None yet
1 participant