{"id":25631,"date":"2025-09-30T09:00:39","date_gmt":"2025-09-30T07:00:39","guid":{"rendered":"https:\/\/xoap.io\/?p=25631"},"modified":"2025-11-17T10:32:00","modified_gmt":"2025-11-17T09:32:00","slug":"automatically-harden-aws-accounts-with-cis-benchmarks","status":"publish","type":"post","link":"https:\/\/xoap.io\/fr\/automatically-harden-aws-accounts-with-cis-benchmarks\/","title":{"rendered":"How to automate AWS CIS hardening"},"content":{"rendered":"\t\t<div data-elementor-type=\"wp-post\" data-elementor-id=\"25631\" class=\"elementor elementor-25631\" data-elementor-post-type=\"post\">\n\t\t\t\t<div class=\"elementor-element elementor-element-86c21a6 e-flex e-con-boxed e-con e-parent\" data-id=\"86c21a6\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;jet_parallax_layout_list&quot;:[]}\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t<div class=\"elementor-element elementor-element-05c1ca8 e-con-full e-flex e-con e-child\" data-id=\"05c1ca8\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;jet_parallax_layout_list&quot;:[]}\">\n\t\t<div class=\"elementor-element elementor-element-f9543e8 e-con-full e-flex e-con e-child\" data-id=\"f9543e8\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;jet_parallax_layout_list&quot;:[]}\">\n\t\t<div class=\"elementor-element elementor-element-2c46337 e-con-full e-flex e-con e-child\" data-id=\"2c46337\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;jet_parallax_layout_list&quot;:[]}\">\n\t\t\t\t<div class=\"elementor-element elementor-element-a37a44e elementor-toc--content-ellipsis elementor-toc--minimized-on-tablet elementor-widget elementor-widget-table-of-contents\" data-id=\"a37a44e\" data-element_type=\"widget\" data-e-type=\"widget\" data-settings=\"{&quot;headings_by_tags&quot;:[&quot;h2&quot;],&quot;container&quot;:&quot;main&quot;,&quot;exclude_headings_by_selector&quot;:[],&quot;marker_view&quot;:&quot;bullets&quot;,&quot;icon&quot;:{&quot;value&quot;:&quot;fas fa-arrow-right&quot;,&quot;library&quot;:&quot;fa-solid&quot;,&quot;rendered_tag&quot;:&quot;&lt;svg class=\\&quot;e-font-icon-svg e-fas-arrow-right\\&quot; viewBox=\\&quot;0 0 448 512\\&quot; xmlns=\\&quot;http:\\\/\\\/www.w3.org\\\/2000\\\/svg\\&quot;&gt;&lt;path d=\\&quot;M190.5 66.9l22.2-22.2c9.4-9.4 24.6-9.4 33.9 0L441 239c9.4 9.4 9.4 24.6 0 33.9L246.6 467.3c-9.4 9.4-24.6 9.4-33.9 0l-22.2-22.2c-9.5-9.5-9.3-25 .4-34.3L311.4 296H24c-13.3 0-24-10.7-24-24v-32c0-13.3 10.7-24 24-24h287.4L190.9 101.2c-9.8-9.3-10-24.8-.4-34.3z\\&quot;&gt;&lt;\\\/path&gt;&lt;\\\/svg&gt;&quot;},&quot;no_headings_message&quot;:&quot;No headings were found on this page.&quot;,&quot;minimize_box&quot;:&quot;yes&quot;,&quot;minimized_on&quot;:&quot;tablet&quot;,&quot;hierarchical_view&quot;:&quot;yes&quot;,&quot;min_height&quot;:{&quot;unit&quot;:&quot;px&quot;,&quot;size&quot;:&quot;&quot;,&quot;sizes&quot;:[]},&quot;min_height_tablet&quot;:{&quot;unit&quot;:&quot;px&quot;,&quot;size&quot;:&quot;&quot;,&quot;sizes&quot;:[]},&quot;min_height_mobile&quot;:{&quot;unit&quot;:&quot;px&quot;,&quot;size&quot;:&quot;&quot;,&quot;sizes&quot;:[]}}\" data-widget_type=\"table-of-contents.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<div class=\"elementor-toc__header\">\n\t\t\t\t\t\t<h4 class=\"elementor-toc__header-title\">\n\t\t\t\tTable of contents\t\t\t<\/h4>\n\t\t\t\t\t\t\t\t\t\t<div class=\"elementor-toc__toggle-button elementor-toc__toggle-button--expand\" role=\"button\" tabindex=\"0\" aria-controls=\"elementor-toc__a37a44e\" aria-expanded=\"true\" aria-label=\"Ouvrir la table des mati\u00e8res\"><svg aria-hidden=\"true\" class=\"e-font-icon-svg e-fas-chevron-down\" viewBox=\"0 0 448 512\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\"><path d=\"M207.029 381.476L12.686 187.132c-9.373-9.373-9.373-24.569 0-33.941l22.667-22.667c9.357-9.357 24.522-9.375 33.901-.04L224 284.505l154.745-154.021c9.379-9.335 24.544-9.317 33.901.04l22.667 22.667c9.373 9.373 9.373 24.569 0 33.941L240.971 381.476c-9.373 9.372-24.569 9.372-33.942 0z\"><\/path><\/svg><\/div>\n\t\t\t\t<div class=\"elementor-toc__toggle-button elementor-toc__toggle-button--collapse\" role=\"button\" tabindex=\"0\" aria-controls=\"elementor-toc__a37a44e\" aria-expanded=\"true\" aria-label=\"Fermer la table des mati\u00e8res\"><svg aria-hidden=\"true\" class=\"e-font-icon-svg e-fas-chevron-up\" viewBox=\"0 0 448 512\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\"><path d=\"M240.971 130.524l194.343 194.343c9.373 9.373 9.373 24.569 0 33.941l-22.667 22.667c-9.357 9.357-24.522 9.375-33.901.04L224 227.495 69.255 381.516c-9.379 9.335-24.544 9.317-33.901-.04l-22.667-22.667c-9.373-9.373-9.373-24.569 0-33.941L207.03 130.525c9.372-9.373 24.568-9.373 33.941-.001z\"><\/path><\/svg><\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<div id=\"elementor-toc__a37a44e\" class=\"elementor-toc__body\">\n\t\t\t<div class=\"elementor-toc__spinner-container\">\n\t\t\t\t<svg class=\"elementor-toc__spinner eicon-animation-spin e-font-icon-svg e-eicon-loading\" aria-hidden=\"true\" viewBox=\"0 0 1000 1000\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\"><path d=\"M500 975V858C696 858 858 696 858 500S696 142 500 142 142 304 142 500H25C25 237 238 25 500 25S975 237 975 500 763 975 500 975Z\"><\/path><\/svg>\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-970cb6e elementor-widget elementor-widget-text-editor\" data-id=\"970cb6e\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p lang=\"hr\">If you manage cloud environments, you already know that security is non-negotiable, but it can slow everything down \u2013 especially when you&#8217;re spinning up new AWS accounts.<\/p><p lang=\"hr\">Every time you add a new account, there\u2019s a long list of things to do: configure logs, enable GuardDuty, tweak IAM policies, block public S3 access&#8230; and so on. It\u2019s tedious, time-consuming, and easy to get wrong.<\/p><p lang=\"hr\">So we built a better way! With XOAP,<strong> your AWS accounts can be CIS compliant the moment you connect them<\/strong>.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-d4c7ac4 e-con-full e-flex e-con e-child\" data-id=\"d4c7ac4\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;jet_parallax_layout_list&quot;:[]}\">\n\t\t\t\t<div class=\"elementor-element elementor-element-42c5d93 elementor-widget elementor-widget-heading\" data-id=\"42c5d93\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">Why the CIS AWS benchmark matters\n<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-6d946c5 elementor-widget elementor-widget-text-editor\" data-id=\"6d946c5\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p lang=\"hr\">The <a href=\"https:\/\/docs.aws.amazon.com\/securityhub\/latest\/userguide\/cis-aws-foundations-benchmark.html\" target=\"_blank\" rel=\"noopener\">CIS AWS Foundations Benchmark<\/a> is a set of best practices designed to help secure AWS environments. It covers things like:<\/p><ul type=\"disc\"><li lang=\"hr\">Logging and monitoring<\/li><li lang=\"hr\">Identity and access management<\/li><li lang=\"hr\">Network protections<\/li><li lang=\"hr\">Encryption settings<\/li><li lang=\"hr\">Regional coverage<\/li><\/ul><p lang=\"hr\">Following these guidelines helps reduce risk and improve your security posture. The problem? Actually applying all of this manually isn\u2019t simple.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-45f1e67 elementor-widget elementor-widget-text-editor\" data-id=\"45f1e67\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<blockquote><p lang=\"hr\"><strong>\ud83d\udccc Read more about <\/strong><a href=\"https:\/\/xoap.io\/cis-compliance\/\" target=\"_blank\" rel=\"noopener\">CIS compliance<\/a><\/p><\/blockquote>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-a07da2c elementor-widget elementor-widget-heading\" data-id=\"a07da2c\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">The problem with manual hardening\n<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-0e76239 elementor-widget elementor-widget-text-editor\" data-id=\"0e76239\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>Here\u2019s how it usually works:<\/p><ol><li>A new AWS account gets created.<\/li><li>Someone (usually a DevOps or security engineer) goes through a checklist.<\/li><li>They set up CloudTrail, enable Config, turn on GuardDuty, enforce MFA, etc.<\/li><li>Repeat for every region and every new account.<\/li><\/ol><p>This process is not only repetitive, but it also introduces inconsistencies, especially as your environment grows.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-6ee47cc elementor-widget elementor-widget-heading\" data-id=\"6ee47cc\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">The fix: XOAP\u2019s automated AWS CIS hardening\n<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-c3eec4c elementor-widget elementor-widget-text-editor\" data-id=\"c3eec4c\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p lang=\"hr\">Instead of doing all that manually, XOAP lets you automate the entire process in just a few clicks. Here\u2019s how it works:<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-5143240 elementor-widget elementor-widget-image\" data-id=\"5143240\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"image.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<a href=\"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/steps-aws-cis-hardening.jpg\" data-elementor-open-lightbox=\"yes\" data-e-action-hash=\"#elementor-action%3Aaction%3Dlightbox%26settings%3DeyJpZCI6MjU1ODQsInVybCI6Imh0dHBzOlwvXC94b2FwLmlvXC93cC1jb250ZW50XC91cGxvYWRzXC8yMDI1XC8wOVwvc3RlcHMtYXdzLWNpcy1oYXJkZW5pbmcuanBnIn0%3D\">\n\t\t\t\t\t\t\t<img fetchpriority=\"high\" decoding=\"async\" width=\"1024\" height=\"666\" src=\"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/steps-aws-cis-hardening-1024x666.jpg\" class=\"attachment-large size-large wp-image-25584\" alt=\"Steps for AWS CIS hardening with XOAP\" srcset=\"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/steps-aws-cis-hardening-1024x666.jpg 1024w, https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/steps-aws-cis-hardening-300x195.jpg 300w, https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/steps-aws-cis-hardening-768x499.jpg 768w, https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/steps-aws-cis-hardening-1536x998.jpg 1536w, https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/steps-aws-cis-hardening-18x12.jpg 18w, https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/steps-aws-cis-hardening.jpg 1920w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/>\t\t\t\t\t\t\t\t<\/a>\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-38124b8 elementor-widget elementor-widget-heading\" data-id=\"38124b8\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">1. Connect your AWS account\n<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-17fb9a2 elementor-widget elementor-widget-text-editor\" data-id=\"17fb9a2\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p lang=\"hr\">Head to your XOAP Workspace, go to <em>Connections<\/em> and add your AWS account. The setup only takes a few minutes.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-10d391c elementor-widget elementor-widget-heading\" data-id=\"10d391c\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">2. Choose the CIS hardening script\n<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-16830c8 elementor-widget elementor-widget-text-editor\" data-id=\"16830c8\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p lang=\"hr\">Open<em> Scripted Actions<\/em>, click <em>New<\/em>, and select the Resource: <strong>aws-ps-account-hardening.ps1<\/strong>. It\u2019s pre-built and ready to go.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-f4a518c elementor-widget elementor-widget-heading\" data-id=\"f4a518c\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">3. Run now or schedule it\n<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-116db44 elementor-widget elementor-widget-text-editor\" data-id=\"116db44\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p lang=\"hr\">Run the action immediately or schedule it to run automatically at the desired time (your choice).<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-d279dc2 elementor-widget elementor-widget-heading\" data-id=\"d279dc2\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">4. Done! Start using your hardened AWS account\n<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-c3a8993 elementor-widget elementor-widget-text-editor\" data-id=\"c3a8993\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p lang=\"hr\">That\u2019s it. The script applies all CIS-aligned settings behind the scenes. No extra tools needed.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-f4b7f28 elementor-widget elementor-widget-heading\" data-id=\"f4b7f28\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">What XOAP configures for you\n<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-236d8a4 elementor-widget elementor-widget-text-editor\" data-id=\"236d8a4\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>When you run the CIS hardening script, XOAP automatically configures:<\/p><ul><li>CloudTrail: Multi-region, KMS-encrypted, with log file validation<\/li><li>AWS Config: Recording and delivery set up across your regions<\/li><li>Security Hub: Enabled per region and subscribed to the CIS standard<\/li><li>GuardDuty: Turned on and actively managed<\/li><li>S3: Public access blocked; SSL-only enforced via bucket policies<\/li><li>EBS\/EC2: Default encryption enabled with your customer-managed keys<\/li><li>VPC: Flow logs on; optional tightening of admin ports<\/li><li>IAM: Strong password policy; optional MFA enforcement for console access.<\/li><\/ul><p>All of this happens automatically, in minutes.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-9fb0de9 elementor-widget elementor-widget-heading\" data-id=\"9fb0de9\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">Why this makes a difference\n<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-c6a74e9 elementor-widget elementor-widget-text-editor\" data-id=\"c6a74e9\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p lang=\"hr\">Cloud teams today are moving fast and security can&#8217;t be an afterthought. With XOAP:<\/p><ul type=\"disc\"><li lang=\"hr\">New accounts are secured instantly \u2013 no lag, no risk.<\/li><li lang=\"hr\">You get consistency at scale \u2013 the same secure setup across all environments.<\/li><li lang=\"hr\">Compliance is easier \u2013 CIS-aligned settings are mapped and exportable.<\/li><li lang=\"hr\">You don\u2019t need to write scripts \u2013 we\u2019ve already done that part.<\/li><\/ul><p lang=\"hr\">Whether you&#8217;re managing a few accounts or hundreds, this saves time and reduces mistakes significantly.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-99a0ab5 elementor-widget elementor-widget-text-editor\" data-id=\"99a0ab5\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<blockquote><p><strong>\ud83d\udccc Read more about<\/strong><a href=\"https:\/\/xoap.io\/cis-ready-aws-accounts\/\" target=\"_blank\" rel=\"noopener\"> CIS-ready AWS accounts<\/a><\/p><\/blockquote>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-067eb67 elementor-widget elementor-widget-heading\" data-id=\"067eb67\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">Try it now<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-f01a45e elementor-widget elementor-widget-text-editor\" data-id=\"f01a45e\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p lang=\"hr\">There\u2019s no reason to spend hours manually securing every new AWS account. It\u2019s repetitive and pulls your team away from more valuable work.<\/p><p lang=\"hr\">With XOAP, CIS hardening becomes automatic. The moment an account is connected, it\u2019s configured with security best practices: no guesswork, no delays. You get consistent, reliable security at scale without slowing anything down.<\/p><p lang=\"hr\">It\u2019s a straightforward fix to a real problem. If you&#8217;re managing cloud environments and care about getting security right from day one, this is how you do it.<\/p><p lang=\"hr\"><em>Please note: The hardening script is automatically available for all new XOAP accounts. If you&#8217;re an existing XOAP user, please<a href=\"https:\/\/xoap.io\/contact\/\" target=\"_blank\" rel=\"noopener\"> contact us<\/a> to get the script.<br \/><br \/><\/em><\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-231b217 elementor-widget elementor-widget-text-editor\" data-id=\"231b217\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<center><strong><strong>We cover instant AWS account security in the Automation Talks podcast<br \/><\/strong><\/strong><center>If the video does not load, adjust your cookie preferences or <a href=\"https:\/\/youtu.be\/VgizHsNkr1Q\" target=\"_blank\" rel=\"noopener\">watch it directly on YouTube<\/a>.<\/center><\/center>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-fd1d04f elementor-widget elementor-widget-video\" data-id=\"fd1d04f\" data-element_type=\"widget\" data-e-type=\"widget\" data-settings=\"{&quot;youtube_url&quot;:&quot;https:\\\/\\\/youtu.be\\\/VgizHsNkr1Q&quot;,&quot;video_type&quot;:&quot;youtube&quot;,&quot;controls&quot;:&quot;yes&quot;}\" data-widget_type=\"video.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-wrapper elementor-open-inline\">\n\t\t\t<div class=\"elementor-video\"><\/div>\t\t<\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-ad08708 elementor-widget elementor-widget-text-editor\" data-id=\"ad08708\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<blockquote><p><strong>\ud83d\udca1 Helpful info:<\/strong><\/p><p><a href=\"https:\/\/xoap.io\/docs\/connect-your-infrastructure\/\" target=\"_blank\" rel=\"noopener\">\u2192How to connect your infrastructure<\/a><br \/><a href=\"https:\/\/xoap.io\/aws-automation\/\" target=\"_blank\" rel=\"noopener\">\u2192Automate your entire AWS operations<\/a><br \/><a href=\"https:\/\/xoap.io\/scripted-actions\/\" target=\"_blank\" rel=\"noopener\">\u2192Centralized script automation<\/a><\/p><\/blockquote>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-25cf300 elementor-widget elementor-widget-spacer\" data-id=\"25cf300\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"spacer.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-spacer\">\n\t\t\t<div class=\"elementor-spacer-inner\"><\/div>\n\t\t<\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-4d386dd e-con-full e-flex e-con e-child\" data-id=\"4d386dd\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;jet_parallax_layout_list&quot;:[]}\">\n\t\t<div class=\"elementor-element elementor-element-ba9e329 e-con-full e-flex e-con e-child\" data-id=\"ba9e329\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;background_background&quot;:&quot;gradient&quot;,&quot;jet_parallax_layout_list&quot;:[]}\">\n\t\t<div class=\"elementor-element elementor-element-8a4b2cf e-con-full e-flex e-con e-child\" data-id=\"8a4b2cf\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;jet_parallax_layout_list&quot;:[]}\">\n\t\t\t\t<div class=\"elementor-element elementor-element-329cfa0 elementor-widget__width-inherit elementor-widget elementor-widget-heading\" data-id=\"329cfa0\" data-element_type=\"widget\" data-e-type=\"widget\" data-settings=\"{&quot;_animation&quot;:&quot;none&quot;,&quot;_animation_tablet&quot;:&quot;fadeInDown&quot;}\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\"><a href=\"https:\/\/auth.xoap.io\/auth\/realms\/my.xoap.io\/protocol\/openid-connect\/registrations?client_id=portal&#038;response_type=code&#038;scope=openid%20email&#038;redirect_uri=https:\/\/my.xoap.io&#038;kc_locale=en&#038;_ga=2.120291981.440170699.1710334465-1088457358.1705491014\" target=\"_blank\">CIS-ready AWS accounts<\/a><\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-6519c7b e-con-full e-flex e-con e-child\" data-id=\"6519c7b\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;jet_parallax_layout_list&quot;:[]}\">\n\t\t\t\t<div class=\"elementor-element elementor-element-a2f8591 elementor-mobile-align-justify elementor-widget-mobile__width-inherit elementor-widget elementor-widget-button\" data-id=\"a2f8591\" data-element_type=\"widget\" data-e-type=\"widget\" data-settings=\"{&quot;_animation_mobile&quot;:&quot;none&quot;}\" title=\"Get lifetime access\" data-widget_type=\"button.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<div class=\"elementor-button-wrapper\">\n\t\t\t\t\t<a class=\"elementor-button elementor-button-link elementor-size-sm\" href=\"https:\/\/auth.xoap.io\/auth\/realms\/my.xoap.io\/protocol\/openid-connect\/registrations?client_id=portal&#038;response_type=code&#038;scope=openid%20email&#038;redirect_uri=https:\/\/my.xoap.io&#038;kc_locale=en\" target=\"_blank\" title=\"Start for free\">\n\t\t\t\t\t\t<span class=\"elementor-button-content-wrapper\">\n\t\t\t\t\t\t\t\t\t<span class=\"elementor-button-text\">Start for free<\/span>\n\t\t\t\t\t<\/span>\n\t\t\t\t\t<\/a>\n\t\t\t\t<\/div>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-a2ed454 elementor-mobile-align-justify elementor-widget-mobile__width-inherit elementor-widget elementor-widget-button\" data-id=\"a2ed454\" data-element_type=\"widget\" data-e-type=\"widget\" title=\"Get lifetime access\" data-widget_type=\"button.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<div class=\"elementor-button-wrapper\">\n\t\t\t\t\t<a class=\"elementor-button elementor-button-link elementor-size-sm\" href=\"https:\/\/calendly.com\/xoap\/30min\" target=\"_blank\" title=\"Book a demo\">\n\t\t\t\t\t\t<span class=\"elementor-button-content-wrapper\">\n\t\t\t\t\t\t\t\t\t<span class=\"elementor-button-text\">Book a demo<\/span>\n\t\t\t\t\t<\/span>\n\t\t\t\t\t<\/a>\n\t\t\t\t<\/div>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t","protected":false},"excerpt":{"rendered":"<p>If you manage cloud environments, you know how time-consuming it is to secure every new AWS account.  XOAP changes that. The moment you connect an account, it\u2019s automatically hardened to meet CIS benchmarks.<\/p>","protected":false},"author":9,"featured_media":25686,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"site-sidebar-layout":"default","site-content-layout":"","ast-site-content-layout":"default","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","ast-disable-related-posts":"","theme-transparent-header-meta":"","adv-header-id-meta":"","stick-header-meta":"","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"default","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"var(--ast-global-color-4)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"footnotes":""},"categories":[1],"tags":[36,106,224],"class_list":["post-25631","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-tutorials","tag-automation","tag-aws","tag-cis"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.1.1 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Automatically harden AWS accounts with CIS benchmarks | XOAP<\/title>\n<meta name=\"description\" content=\"With XOAP, your AWS accounts become CIS compliant instantly upon connection for automated security and continuous compliance.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/xoap.io\/fr\/automatically-harden-aws-accounts-with-cis-benchmarks\/\" \/>\n<meta property=\"og:locale\" content=\"fr_FR\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Automatically harden AWS accounts with CIS benchmarks | XOAP\" \/>\n<meta property=\"og:description\" content=\"With XOAP, your AWS accounts become CIS compliant instantly upon connection for automated security and continuous compliance.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/xoap.io\/fr\/automatically-harden-aws-accounts-with-cis-benchmarks\/\" \/>\n<meta property=\"og:site_name\" content=\"XOAP\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/XOAP.io\" \/>\n<meta property=\"article:published_time\" content=\"2025-09-30T07:00:39+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2025-11-17T09:32:00+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/aws-cis-accounts-automated-with-xoap.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1024\" \/>\n\t<meta property=\"og:image:height\" content=\"600\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Stella\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:title\" content=\"Automatically harden AWS accounts with CIS benchmarks | XOAP\" \/>\n<meta name=\"twitter:description\" content=\"With XOAP, your AWS accounts become CIS compliant instantly upon connection for automated security and continuous compliance.\" \/>\n<meta name=\"twitter:image\" content=\"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/aws-cis-accounts-automated-with-xoap.png\" \/>\n<meta name=\"twitter:creator\" content=\"@xoap_io\" \/>\n<meta name=\"twitter:site\" content=\"@xoap_io\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/\"},\"author\":{\"name\":\"Stella\",\"@id\":\"https:\/\/xoap.io\/#\/schema\/person\/314d29f4cf90a9d71083d89152fd5d44\"},\"headline\":\"How to automate AWS CIS hardening\",\"datePublished\":\"2025-09-30T07:00:39+00:00\",\"dateModified\":\"2025-11-17T09:32:00+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/\"},\"wordCount\":701,\"publisher\":{\"@id\":\"https:\/\/xoap.io\/#organization\"},\"image\":{\"@id\":\"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/aws-cis-accounts-automated-with-xoap.png\",\"keywords\":[\"automation\",\"aws\",\"cis\"],\"articleSection\":[\"Tutorials\"],\"inLanguage\":\"fr-FR\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/\",\"url\":\"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/\",\"name\":\"Automatically harden AWS accounts with CIS benchmarks | XOAP\",\"isPartOf\":{\"@id\":\"https:\/\/xoap.io\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/aws-cis-accounts-automated-with-xoap.png\",\"datePublished\":\"2025-09-30T07:00:39+00:00\",\"dateModified\":\"2025-11-17T09:32:00+00:00\",\"description\":\"With XOAP, your AWS accounts become CIS compliant instantly upon connection for automated security and continuous compliance.\",\"breadcrumb\":{\"@id\":\"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#breadcrumb\"},\"inLanguage\":\"fr-FR\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#primaryimage\",\"url\":\"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/aws-cis-accounts-automated-with-xoap.png\",\"contentUrl\":\"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/aws-cis-accounts-automated-with-xoap.png\",\"width\":1024,\"height\":600,\"caption\":\"AWS CIS accounts automated with XOAP\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/xoap.io\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"How to automate AWS CIS hardening\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/xoap.io\/#website\",\"url\":\"https:\/\/xoap.io\/\",\"name\":\"XOAP\",\"description\":\"Platform for IT infrastructure and workplace automation\",\"publisher\":{\"@id\":\"https:\/\/xoap.io\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/xoap.io\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"fr-FR\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/xoap.io\/#organization\",\"name\":\"XOAP\",\"url\":\"https:\/\/xoap.io\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\/\/xoap.io\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/xoap.io\/wp-content\/uploads\/2023\/11\/XOAP-no-lettering-transparent_no-boarder.svg\",\"contentUrl\":\"https:\/\/xoap.io\/wp-content\/uploads\/2023\/11\/XOAP-no-lettering-transparent_no-boarder.svg\",\"width\":250,\"height\":90,\"caption\":\"XOAP\"},\"image\":{\"@id\":\"https:\/\/xoap.io\/#\/schema\/logo\/image\/\"},\"sameAs\":[\"https:\/\/www.facebook.com\/XOAP.io\",\"https:\/\/x.com\/xoap_io\",\"https:\/\/www.linkedin.com\/company\/xoap_io\",\"https:\/\/www.youtube.com\/@xoap_io\",\"https:\/\/github.com\/xoap-io\",\"https:\/\/www.instagram.com\/xoap_io\"]},{\"@type\":\"Person\",\"@id\":\"https:\/\/xoap.io\/#\/schema\/person\/314d29f4cf90a9d71083d89152fd5d44\",\"name\":\"Stella\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\/\/xoap.io\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/6bc7467073a5706bfd15edebaed2274b66edc632ad28e8b70c694c3136fb36d5?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/6bc7467073a5706bfd15edebaed2274b66edc632ad28e8b70c694c3136fb36d5?s=96&d=mm&r=g\",\"caption\":\"Stella\"},\"url\":\"https:\/\/xoap.io\/fr\/author\/stella\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Automatically harden AWS accounts with CIS benchmarks | XOAP","description":"With XOAP, your AWS accounts become CIS compliant instantly upon connection for automated security and continuous compliance.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/xoap.io\/fr\/automatically-harden-aws-accounts-with-cis-benchmarks\/","og_locale":"fr_FR","og_type":"article","og_title":"Automatically harden AWS accounts with CIS benchmarks | XOAP","og_description":"With XOAP, your AWS accounts become CIS compliant instantly upon connection for automated security and continuous compliance.","og_url":"https:\/\/xoap.io\/fr\/automatically-harden-aws-accounts-with-cis-benchmarks\/","og_site_name":"XOAP","article_publisher":"https:\/\/www.facebook.com\/XOAP.io","article_published_time":"2025-09-30T07:00:39+00:00","article_modified_time":"2025-11-17T09:32:00+00:00","og_image":[{"width":1024,"height":600,"url":"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/aws-cis-accounts-automated-with-xoap.png","type":"image\/png"}],"author":"Stella","twitter_card":"summary_large_image","twitter_title":"Automatically harden AWS accounts with CIS benchmarks | XOAP","twitter_description":"With XOAP, your AWS accounts become CIS compliant instantly upon connection for automated security and continuous compliance.","twitter_image":"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/aws-cis-accounts-automated-with-xoap.png","twitter_creator":"@xoap_io","twitter_site":"@xoap_io","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#article","isPartOf":{"@id":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/"},"author":{"name":"Stella","@id":"https:\/\/xoap.io\/#\/schema\/person\/314d29f4cf90a9d71083d89152fd5d44"},"headline":"How to automate AWS CIS hardening","datePublished":"2025-09-30T07:00:39+00:00","dateModified":"2025-11-17T09:32:00+00:00","mainEntityOfPage":{"@id":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/"},"wordCount":701,"publisher":{"@id":"https:\/\/xoap.io\/#organization"},"image":{"@id":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#primaryimage"},"thumbnailUrl":"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/aws-cis-accounts-automated-with-xoap.png","keywords":["automation","aws","cis"],"articleSection":["Tutorials"],"inLanguage":"fr-FR"},{"@type":"WebPage","@id":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/","url":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/","name":"Automatically harden AWS accounts with CIS benchmarks | XOAP","isPartOf":{"@id":"https:\/\/xoap.io\/#website"},"primaryImageOfPage":{"@id":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#primaryimage"},"image":{"@id":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#primaryimage"},"thumbnailUrl":"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/aws-cis-accounts-automated-with-xoap.png","datePublished":"2025-09-30T07:00:39+00:00","dateModified":"2025-11-17T09:32:00+00:00","description":"With XOAP, your AWS accounts become CIS compliant instantly upon connection for automated security and continuous compliance.","breadcrumb":{"@id":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#breadcrumb"},"inLanguage":"fr-FR","potentialAction":[{"@type":"ReadAction","target":["https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/"]}]},{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#primaryimage","url":"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/aws-cis-accounts-automated-with-xoap.png","contentUrl":"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/aws-cis-accounts-automated-with-xoap.png","width":1024,"height":600,"caption":"AWS CIS accounts automated with XOAP"},{"@type":"BreadcrumbList","@id":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/xoap.io\/"},{"@type":"ListItem","position":2,"name":"How to automate AWS CIS hardening"}]},{"@type":"WebSite","@id":"https:\/\/xoap.io\/#website","url":"https:\/\/xoap.io\/","name":"XOAP","description":"Plate-forme pour l'infrastructure informatique et l'automatisation du lieu de travail","publisher":{"@id":"https:\/\/xoap.io\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/xoap.io\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"fr-FR"},{"@type":"Organization","@id":"https:\/\/xoap.io\/#organization","name":"XOAP","url":"https:\/\/xoap.io\/","logo":{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/xoap.io\/#\/schema\/logo\/image\/","url":"https:\/\/xoap.io\/wp-content\/uploads\/2023\/11\/XOAP-no-lettering-transparent_no-boarder.svg","contentUrl":"https:\/\/xoap.io\/wp-content\/uploads\/2023\/11\/XOAP-no-lettering-transparent_no-boarder.svg","width":250,"height":90,"caption":"XOAP"},"image":{"@id":"https:\/\/xoap.io\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/XOAP.io","https:\/\/x.com\/xoap_io","https:\/\/www.linkedin.com\/company\/xoap_io","https:\/\/www.youtube.com\/@xoap_io","https:\/\/github.com\/xoap-io","https:\/\/www.instagram.com\/xoap_io"]},{"@type":"Person","@id":"https:\/\/xoap.io\/#\/schema\/person\/314d29f4cf90a9d71083d89152fd5d44","name":"Stella","image":{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/xoap.io\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/6bc7467073a5706bfd15edebaed2274b66edc632ad28e8b70c694c3136fb36d5?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/6bc7467073a5706bfd15edebaed2274b66edc632ad28e8b70c694c3136fb36d5?s=96&d=mm&r=g","caption":"Stella"},"url":"https:\/\/xoap.io\/fr\/author\/stella\/"}]}},"_links":{"self":[{"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/posts\/25631","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/users\/9"}],"replies":[{"embeddable":true,"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/comments?post=25631"}],"version-history":[{"count":39,"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/posts\/25631\/revisions"}],"predecessor-version":[{"id":25980,"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/posts\/25631\/revisions\/25980"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/media\/25686"}],"wp:attachment":[{"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/media?parent=25631"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/categories?post=25631"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/tags?post=25631"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}