Why does the CIS AWS Foundations Benchmark package cost additional money? #69
-
A customer asked:
|
Beta Was this translation helpful? Give feedback.
Replies: 1 comment
-
Our reference architecture and the CIS compliance repo are certified by CIS. We pay a membership fee to CIS. We also maintain the code according to the latest version of the Benchmark and provide migration guides (see here and here, for example). It’s actually possible to achieve CIS compliance with the library without the CIS package; all the modules have the features available. However, it’s faster and thus more cost effective to use our dedicated compliance repo with all the wrapper modules. One example here is to flush out what CIS actually requires. Yes, setting up MFA delete is a requirement, but:
|
Beta Was this translation helpful? Give feedback.
Our reference architecture and the CIS compliance repo are certified by CIS. We pay a membership fee to CIS. We also maintain the code according to the latest version of the Benchmark and provide migration guides (see here and here, for example). It’s actually possible to achieve CIS compliance with the library without the CIS package; all the modules have the features available. However, it’s faster and thus more cost effective to use our dedicated compliance repo with all the wrapper modules.
One example here is to flush out what CIS actually requires. Yes, setting up MFA delete is a requirement, but: