AWS Security Audit Toolkit
A 60+ point security assessment for AWS environments. Covers IAM policy auditing, VPC configuration review, S3 bucket exposure checks, CloudTrail log validation, GuardDuty alerting, and compliance mapping to SOC 2 and FedRAMP controls. Built from real security audits conducted at Cigna Healthcare and Lockheed Martin classified environments.
Audit Domains Covered
Comprehensive security assessment across every critical AWS service.
Identity & Access
Root account lockdown, MFA enforcement, permission boundary auditing, cross-account role review, and unused credential detection using AWS Access Analyzer.
VPC & Network
Security group rule review, NACL configuration, VPC Flow Log analysis, public subnet exposure checks, and Transit Gateway routing validation.
S3 & Data
Bucket policy analysis, public access block verification, encryption-at-rest validation, versioning checks, and cross-region replication audit.
CloudTrail & Monitoring
Multi-region CloudTrail validation, log file integrity, CloudWatch alarm configuration, EventBridge rules, and centralized logging architecture.
GuardDuty & Threat
GuardDuty enablement across all regions, finding suppression rules, automated remediation with Lambda, and integration with Security Hub.
SOC 2 & FedRAMP
AWS Config rule mapping to SOC 2 controls, FedRAMP High baseline checks, continuous compliance monitoring, and audit evidence collection automation.
AWS Security Audit Toolkit
Free 60+ point security audit assessment covering IAM, VPC, S3, CloudTrail, GuardDuty, and compliance controls mapped to SOC 2 and FedRAMP.
What Our Students Say
Real outcomes from cloud professionals who learned with Citadel Cloud.