Migrating from the Compliance module to AWS compliance tools
If you use the Stax Compliance module to manage your organizational compliance in AWS, you might want to consider some of the alternatives below. If you have AWS Enterprise Support, your TAM can help with this too.
For customers with Stax-managed AWS accounts, consider enabling AWS Security Hub using Foundation Services.
If you were using the Rules page
for... | then you might consider... |
---|---|
Organizational compliance against security and configuration foundations | AWS Config and AWS Security Hub |
Tag management | Tag Editor |
If you were using Rule Bundles
Rule Bundle | Consider using... |
---|---|
ACSC Essential Eight | AWS Config: Operational Best Practices for ACSC Essential 8 |
APRA Compliance Bundle | AWS Config: Operational Best Practices for APRA CPG 234 |
CIS Benchmarks | AWS Security Hub: CIS AWS Foundations Benchmark |
NIST CyberSecurity Framework v1.1.0 | AWS Audit Manager: NIST Cybersecurity Framework v1.1 |
PCI DSS v3.2.1 | AWS Config: Operational Best Practices for PCI DSS 3.2.1 |
CloudTrail Best Practice | AWS Security Hub: CIS AWS Foundations Benchmark |
EC2 Best Practice | AWS Security Hub: CIS AWS Foundations Benchmark |
IAM Best Practice | AWS Security Hub: CIS AWS Foundations Benchmark |
Public Exposure | Security control recommendations for protecting data |
RDS Best Practice | AWS Security Hub: CIS AWS Foundations Benchmark |
S3 Best Practice | AWS Security Hub: CIS AWS Foundations Benchmark |
SNS Best Practice | Amazon SNS security best practices |
SQS Best Practice | Amazon SQS best practices |
Stax Foundation Compliance | AWS Config and AWS Security Hub |