{"id":25631,"date":"2025-09-30T09:00:39","date_gmt":"2025-09-30T07:00:39","guid":{"rendered":"https:\/\/xoap.io\/?p=25631"},"modified":"2025-11-17T10:32:00","modified_gmt":"2025-11-17T09:32:00","slug":"automatically-harden-aws-accounts-with-cis-benchmarks","status":"publish","type":"post","link":"https:\/\/xoap.io\/fr\/automatically-harden-aws-accounts-with-cis-benchmarks\/","title":{"rendered":"Comment automatiser le durcissement AWS CIS"},"content":{"rendered":"\t\t<div data-elementor-type=\"wp-post\" data-elementor-id=\"25631\" class=\"elementor elementor-25631\" data-elementor-post-type=\"post\">\n\t\t\t\t<div class=\"elementor-element elementor-element-86c21a6 e-flex e-con-boxed e-con e-parent\" data-id=\"86c21a6\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;jet_parallax_layout_list&quot;:[]}\">\n\t\t\t\t\t<div class=\"e-con-inner\">\n\t\t<div class=\"elementor-element elementor-element-05c1ca8 e-con-full e-flex e-con e-child\" data-id=\"05c1ca8\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;jet_parallax_layout_list&quot;:[]}\">\n\t\t<div class=\"elementor-element elementor-element-f9543e8 e-con-full e-flex e-con e-child\" data-id=\"f9543e8\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;jet_parallax_layout_list&quot;:[]}\">\n\t\t<div class=\"elementor-element elementor-element-2c46337 e-con-full e-flex e-con e-child\" data-id=\"2c46337\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;jet_parallax_layout_list&quot;:[]}\">\n\t\t\t\t<div class=\"elementor-element elementor-element-a37a44e elementor-toc--content-ellipsis elementor-toc--minimized-on-tablet elementor-widget elementor-widget-table-of-contents\" data-id=\"a37a44e\" data-element_type=\"widget\" data-e-type=\"widget\" data-settings=\"{&quot;headings_by_tags&quot;:[&quot;h2&quot;],&quot;container&quot;:&quot;main&quot;,&quot;exclude_headings_by_selector&quot;:[],&quot;marker_view&quot;:&quot;bullets&quot;,&quot;icon&quot;:{&quot;value&quot;:&quot;fas fa-arrow-right&quot;,&quot;library&quot;:&quot;fa-solid&quot;,&quot;rendered_tag&quot;:&quot;&lt;svg class=\\&quot;e-font-icon-svg e-fas-arrow-right\\&quot; viewBox=\\&quot;0 0 448 512\\&quot; xmlns=\\&quot;http:\\\/\\\/www.w3.org\\\/2000\\\/svg\\&quot;&gt;&lt;path d=\\&quot;M190.5 66.9l22.2-22.2c9.4-9.4 24.6-9.4 33.9 0L441 239c9.4 9.4 9.4 24.6 0 33.9L246.6 467.3c-9.4 9.4-24.6 9.4-33.9 0l-22.2-22.2c-9.5-9.5-9.3-25 .4-34.3L311.4 296H24c-13.3 0-24-10.7-24-24v-32c0-13.3 10.7-24 24-24h287.4L190.9 101.2c-9.8-9.3-10-24.8-.4-34.3z\\&quot;&gt;&lt;\\\/path&gt;&lt;\\\/svg&gt;&quot;},&quot;no_headings_message&quot;:&quot;No headings were found on this page.&quot;,&quot;minimize_box&quot;:&quot;yes&quot;,&quot;minimized_on&quot;:&quot;tablet&quot;,&quot;hierarchical_view&quot;:&quot;yes&quot;,&quot;min_height&quot;:{&quot;unit&quot;:&quot;px&quot;,&quot;size&quot;:&quot;&quot;,&quot;sizes&quot;:[]},&quot;min_height_tablet&quot;:{&quot;unit&quot;:&quot;px&quot;,&quot;size&quot;:&quot;&quot;,&quot;sizes&quot;:[]},&quot;min_height_mobile&quot;:{&quot;unit&quot;:&quot;px&quot;,&quot;size&quot;:&quot;&quot;,&quot;sizes&quot;:[]}}\" data-widget_type=\"table-of-contents.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<div class=\"elementor-toc__header\">\n\t\t\t\t\t\t<h4 class=\"elementor-toc__header-title\">\n\t\t\t\tTable of contents\t\t\t<\/h4>\n\t\t\t\t\t\t\t\t\t\t<div class=\"elementor-toc__toggle-button elementor-toc__toggle-button--expand\" role=\"button\" tabindex=\"0\" aria-controls=\"elementor-toc__a37a44e\" aria-expanded=\"true\" aria-label=\"Ouvrir la table des mati\u00e8res\"><svg aria-hidden=\"true\" class=\"e-font-icon-svg e-fas-chevron-down\" viewBox=\"0 0 448 512\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\"><path d=\"M207.029 381.476L12.686 187.132c-9.373-9.373-9.373-24.569 0-33.941l22.667-22.667c9.357-9.357 24.522-9.375 33.901-.04L224 284.505l154.745-154.021c9.379-9.335 24.544-9.317 33.901.04l22.667 22.667c9.373 9.373 9.373 24.569 0 33.941L240.971 381.476c-9.373 9.372-24.569 9.372-33.942 0z\"><\/path><\/svg><\/div>\n\t\t\t\t<div class=\"elementor-toc__toggle-button elementor-toc__toggle-button--collapse\" role=\"button\" tabindex=\"0\" aria-controls=\"elementor-toc__a37a44e\" aria-expanded=\"true\" aria-label=\"Fermer la table des mati\u00e8res\"><svg aria-hidden=\"true\" class=\"e-font-icon-svg e-fas-chevron-up\" viewBox=\"0 0 448 512\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\"><path d=\"M240.971 130.524l194.343 194.343c9.373 9.373 9.373 24.569 0 33.941l-22.667 22.667c-9.357 9.357-24.522 9.375-33.901.04L224 227.495 69.255 381.516c-9.379 9.335-24.544 9.317-33.901-.04l-22.667-22.667c-9.373-9.373-9.373-24.569 0-33.941L207.03 130.525c9.372-9.373 24.568-9.373 33.941-.001z\"><\/path><\/svg><\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<div id=\"elementor-toc__a37a44e\" class=\"elementor-toc__body\">\n\t\t\t<div class=\"elementor-toc__spinner-container\">\n\t\t\t\t<svg class=\"elementor-toc__spinner eicon-animation-spin e-font-icon-svg e-eicon-loading\" aria-hidden=\"true\" viewBox=\"0 0 1000 1000\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\"><path d=\"M500 975V858C696 858 858 696 858 500S696 142 500 142 142 304 142 500H25C25 237 238 25 500 25S975 237 975 500 763 975 500 975Z\"><\/path><\/svg>\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-970cb6e elementor-widget elementor-widget-text-editor\" data-id=\"970cb6e\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p lang=\"hr\">If you manage cloud environments, you already know that security is non-negotiable, but it can slow everything down \u2013 especially when you&#8217;re spinning up new AWS accounts.<\/p><p lang=\"hr\">Every time you add a new account, there\u2019s a long list of things to do: configure logs, enable GuardDuty, tweak IAM policies, block public S3 access&#8230; and so on. It\u2019s tedious, time-consuming, and easy to get wrong.<\/p><p lang=\"hr\">So we built a better way! With XOAP,<strong> your AWS accounts can be CIS compliant the moment you connect them<\/strong>.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-d4c7ac4 e-con-full e-flex e-con e-child\" data-id=\"d4c7ac4\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;jet_parallax_layout_list&quot;:[]}\">\n\t\t\t\t<div class=\"elementor-element elementor-element-42c5d93 elementor-widget elementor-widget-heading\" data-id=\"42c5d93\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">Why the CIS AWS benchmark matters\n<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-6d946c5 elementor-widget elementor-widget-text-editor\" data-id=\"6d946c5\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p lang=\"hr\">The <a href=\"https:\/\/docs.aws.amazon.com\/securityhub\/latest\/userguide\/cis-aws-foundations-benchmark.html\" target=\"_blank\" rel=\"noopener\">CIS AWS Foundations Benchmark<\/a> is a set of best practices designed to help secure AWS environments. It covers things like:<\/p><ul type=\"disc\"><li lang=\"hr\">Logging and monitoring<\/li><li lang=\"hr\">Identity and access management<\/li><li lang=\"hr\">Network protections<\/li><li lang=\"hr\">Encryption settings<\/li><li lang=\"hr\">Regional coverage<\/li><\/ul><p lang=\"hr\">Following these guidelines helps reduce risk and improve your security posture. The problem? Actually applying all of this manually isn\u2019t simple.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-45f1e67 elementor-widget elementor-widget-text-editor\" data-id=\"45f1e67\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<blockquote><p lang=\"hr\"><strong>\ud83d\udccc Read more about <\/strong><a href=\"https:\/\/xoap.io\/cis-compliance\/\" target=\"_blank\" rel=\"noopener\">CIS compliance<\/a><\/p><\/blockquote>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-a07da2c elementor-widget elementor-widget-heading\" data-id=\"a07da2c\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">The problem with manual hardening\n<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-0e76239 elementor-widget elementor-widget-text-editor\" data-id=\"0e76239\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>Here\u2019s how it usually works:<\/p><ol><li>A new AWS account gets created.<\/li><li>Someone (usually a DevOps or security engineer) goes through a checklist.<\/li><li>They set up CloudTrail, enable Config, turn on GuardDuty, enforce MFA, etc.<\/li><li>Repeat for every region and every new account.<\/li><\/ol><p>This process is not only repetitive, but it also introduces inconsistencies, especially as your environment grows.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-6ee47cc elementor-widget elementor-widget-heading\" data-id=\"6ee47cc\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">The fix: XOAP\u2019s automated AWS CIS hardening\n<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-c3eec4c elementor-widget elementor-widget-text-editor\" data-id=\"c3eec4c\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p lang=\"hr\">Instead of doing all that manually, XOAP lets you automate the entire process in just a few clicks. Here\u2019s how it works:<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-5143240 elementor-widget elementor-widget-image\" data-id=\"5143240\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"image.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<a href=\"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/steps-aws-cis-hardening.jpg\" data-elementor-open-lightbox=\"yes\" data-e-action-hash=\"#elementor-action%3Aaction%3Dlightbox%26settings%3DeyJpZCI6MjU1ODQsInVybCI6Imh0dHBzOlwvXC94b2FwLmlvXC93cC1jb250ZW50XC91cGxvYWRzXC8yMDI1XC8wOVwvc3RlcHMtYXdzLWNpcy1oYXJkZW5pbmcuanBnIn0%3D\">\n\t\t\t\t\t\t\t<img fetchpriority=\"high\" decoding=\"async\" width=\"1024\" height=\"666\" src=\"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/steps-aws-cis-hardening-1024x666.jpg\" class=\"attachment-large size-large wp-image-25584\" alt=\"Steps for AWS CIS hardening with XOAP\" srcset=\"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/steps-aws-cis-hardening-1024x666.jpg 1024w, https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/steps-aws-cis-hardening-300x195.jpg 300w, https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/steps-aws-cis-hardening-768x499.jpg 768w, https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/steps-aws-cis-hardening-1536x998.jpg 1536w, https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/steps-aws-cis-hardening-18x12.jpg 18w, https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/steps-aws-cis-hardening.jpg 1920w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/>\t\t\t\t\t\t\t\t<\/a>\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-38124b8 elementor-widget elementor-widget-heading\" data-id=\"38124b8\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">1. Connect your AWS account\n<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-17fb9a2 elementor-widget elementor-widget-text-editor\" data-id=\"17fb9a2\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p lang=\"hr\">Head to your XOAP Workspace, go to <em>Connections<\/em> and add your AWS account. The setup only takes a few minutes.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-10d391c elementor-widget elementor-widget-heading\" data-id=\"10d391c\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">2. Choose the CIS hardening script\n<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-16830c8 elementor-widget elementor-widget-text-editor\" data-id=\"16830c8\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p lang=\"hr\">Open<em> Scripted Actions<\/em>, click <em>New<\/em>, and select the Resource: <strong>aws-ps-account-hardening.ps1<\/strong>. It\u2019s pre-built and ready to go.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-f4a518c elementor-widget elementor-widget-heading\" data-id=\"f4a518c\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">3. Run now or schedule it\n<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-116db44 elementor-widget elementor-widget-text-editor\" data-id=\"116db44\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p lang=\"hr\">Run the action immediately or schedule it to run automatically at the desired time (your choice).<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-d279dc2 elementor-widget elementor-widget-heading\" data-id=\"d279dc2\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h3 class=\"elementor-heading-title elementor-size-default\">4. Done! Start using your hardened AWS account\n<\/h3>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-c3a8993 elementor-widget elementor-widget-text-editor\" data-id=\"c3a8993\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p lang=\"hr\">That\u2019s it. The script applies all CIS-aligned settings behind the scenes. No extra tools needed.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-f4b7f28 elementor-widget elementor-widget-heading\" data-id=\"f4b7f28\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">What XOAP configures for you\n<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-236d8a4 elementor-widget elementor-widget-text-editor\" data-id=\"236d8a4\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p>When you run the CIS hardening script, XOAP automatically configures:<\/p><ul><li>CloudTrail: Multi-region, KMS-encrypted, with log file validation<\/li><li>AWS Config: Recording and delivery set up across your regions<\/li><li>Security Hub: Enabled per region and subscribed to the CIS standard<\/li><li>GuardDuty: Turned on and actively managed<\/li><li>S3: Public access blocked; SSL-only enforced via bucket policies<\/li><li>EBS\/EC2: Default encryption enabled with your customer-managed keys<\/li><li>VPC: Flow logs on; optional tightening of admin ports<\/li><li>IAM: Strong password policy; optional MFA enforcement for console access.<\/li><\/ul><p>All of this happens automatically, in minutes.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-9fb0de9 elementor-widget elementor-widget-heading\" data-id=\"9fb0de9\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">Why this makes a difference\n<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-c6a74e9 elementor-widget elementor-widget-text-editor\" data-id=\"c6a74e9\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p lang=\"hr\">Cloud teams today are moving fast and security can&#8217;t be an afterthought. With XOAP:<\/p><ul type=\"disc\"><li lang=\"hr\">New accounts are secured instantly \u2013 no lag, no risk.<\/li><li lang=\"hr\">You get consistency at scale \u2013 the same secure setup across all environments.<\/li><li lang=\"hr\">Compliance is easier \u2013 CIS-aligned settings are mapped and exportable.<\/li><li lang=\"hr\">You don\u2019t need to write scripts \u2013 we\u2019ve already done that part.<\/li><\/ul><p lang=\"hr\">Whether you&#8217;re managing a few accounts or hundreds, this saves time and reduces mistakes significantly.<\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-99a0ab5 elementor-widget elementor-widget-text-editor\" data-id=\"99a0ab5\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<blockquote><p><strong>\ud83d\udccc Read more about<\/strong><a href=\"https:\/\/xoap.io\/cis-ready-aws-accounts\/\" target=\"_blank\" rel=\"noopener\"> CIS-ready AWS accounts<\/a><\/p><\/blockquote>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-067eb67 elementor-widget elementor-widget-heading\" data-id=\"067eb67\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\">Try it now<\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-f01a45e elementor-widget elementor-widget-text-editor\" data-id=\"f01a45e\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<p lang=\"hr\">There\u2019s no reason to spend hours manually securing every new AWS account. It\u2019s repetitive and pulls your team away from more valuable work.<\/p><p lang=\"hr\">With XOAP, CIS hardening becomes automatic. The moment an account is connected, it\u2019s configured with security best practices: no guesswork, no delays. You get consistent, reliable security at scale without slowing anything down.<\/p><p lang=\"hr\">It\u2019s a straightforward fix to a real problem. If you&#8217;re managing cloud environments and care about getting security right from day one, this is how you do it.<\/p><p lang=\"hr\"><em>Please note: The hardening script is automatically available for all new XOAP accounts. If you&#8217;re an existing XOAP user, please<a href=\"https:\/\/xoap.io\/contact\/\" target=\"_blank\" rel=\"noopener\"> contact us<\/a> to get the script.<br \/><br \/><\/em><\/p>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-231b217 elementor-widget elementor-widget-text-editor\" data-id=\"231b217\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<center><strong><strong>We cover instant AWS account security in the Automation Talks podcast<br \/><\/strong><\/strong><center>If the video does not load, adjust your cookie preferences or <a href=\"https:\/\/youtu.be\/VgizHsNkr1Q\" target=\"_blank\" rel=\"noopener\">watch it directly on YouTube<\/a>.<\/center><\/center>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-fd1d04f elementor-widget elementor-widget-video\" data-id=\"fd1d04f\" data-element_type=\"widget\" data-e-type=\"widget\" data-settings=\"{&quot;youtube_url&quot;:&quot;https:\\\/\\\/youtu.be\\\/VgizHsNkr1Q&quot;,&quot;video_type&quot;:&quot;youtube&quot;,&quot;controls&quot;:&quot;yes&quot;}\" data-widget_type=\"video.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-wrapper elementor-open-inline\">\n\t\t\t<div class=\"elementor-video\"><\/div>\t\t<\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-ad08708 elementor-widget elementor-widget-text-editor\" data-id=\"ad08708\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"text-editor.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<blockquote><p><strong>\ud83d\udca1 Helpful info:<\/strong><\/p><p><a href=\"https:\/\/xoap.io\/docs\/connect-your-infrastructure\/\" target=\"_blank\" rel=\"noopener\">\u2192How to connect your infrastructure<\/a><br \/><a href=\"https:\/\/xoap.io\/aws-automation\/\" target=\"_blank\" rel=\"noopener\">\u2192Automate your entire AWS operations<\/a><br \/><a href=\"https:\/\/xoap.io\/scripted-actions\/\" target=\"_blank\" rel=\"noopener\">\u2192Centralized script automation<\/a><\/p><\/blockquote>\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-25cf300 elementor-widget elementor-widget-spacer\" data-id=\"25cf300\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"spacer.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t<div class=\"elementor-spacer\">\n\t\t\t<div class=\"elementor-spacer-inner\"><\/div>\n\t\t<\/div>\n\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-4d386dd e-con-full e-flex e-con e-child\" data-id=\"4d386dd\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;jet_parallax_layout_list&quot;:[]}\">\n\t\t<div class=\"elementor-element elementor-element-ba9e329 e-con-full e-flex e-con e-child\" data-id=\"ba9e329\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;background_background&quot;:&quot;gradient&quot;,&quot;jet_parallax_layout_list&quot;:[]}\">\n\t\t<div class=\"elementor-element elementor-element-8a4b2cf e-con-full e-flex e-con e-child\" data-id=\"8a4b2cf\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;jet_parallax_layout_list&quot;:[]}\">\n\t\t\t\t<div class=\"elementor-element elementor-element-329cfa0 elementor-widget__width-inherit elementor-widget elementor-widget-heading\" data-id=\"329cfa0\" data-element_type=\"widget\" data-e-type=\"widget\" data-settings=\"{&quot;_animation&quot;:&quot;none&quot;,&quot;_animation_tablet&quot;:&quot;fadeInDown&quot;}\" data-widget_type=\"heading.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<h2 class=\"elementor-heading-title elementor-size-default\"><a href=\"https:\/\/auth.xoap.io\/auth\/realms\/my.xoap.io\/protocol\/openid-connect\/registrations?client_id=portal&#038;response_type=code&#038;scope=openid%20email&#038;redirect_uri=https:\/\/my.xoap.io&#038;kc_locale=en&#038;_ga=2.120291981.440170699.1710334465-1088457358.1705491014\" target=\"_blank\">CIS-ready AWS accounts<\/a><\/h2>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t<div class=\"elementor-element elementor-element-6519c7b e-con-full e-flex e-con e-child\" data-id=\"6519c7b\" data-element_type=\"container\" data-e-type=\"container\" data-settings=\"{&quot;jet_parallax_layout_list&quot;:[]}\">\n\t\t\t\t<div class=\"elementor-element elementor-element-a2f8591 elementor-mobile-align-justify elementor-widget-mobile__width-inherit elementor-widget elementor-widget-button\" data-id=\"a2f8591\" data-element_type=\"widget\" data-e-type=\"widget\" data-settings=\"{&quot;_animation_mobile&quot;:&quot;none&quot;}\" title=\"Get lifetime access\" data-widget_type=\"button.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<div class=\"elementor-button-wrapper\">\n\t\t\t\t\t<a class=\"elementor-button elementor-button-link elementor-size-sm\" href=\"https:\/\/auth.xoap.io\/auth\/realms\/my.xoap.io\/protocol\/openid-connect\/registrations?client_id=portal&#038;response_type=code&#038;scope=openid%20email&#038;redirect_uri=https:\/\/my.xoap.io&#038;kc_locale=en\" target=\"_blank\" title=\"Start for free\">\n\t\t\t\t\t\t<span class=\"elementor-button-content-wrapper\">\n\t\t\t\t\t\t\t\t\t<span class=\"elementor-button-text\">Start for free<\/span>\n\t\t\t\t\t<\/span>\n\t\t\t\t\t<\/a>\n\t\t\t\t<\/div>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<div class=\"elementor-element elementor-element-a2ed454 elementor-mobile-align-justify elementor-widget-mobile__width-inherit elementor-widget elementor-widget-button\" data-id=\"a2ed454\" data-element_type=\"widget\" data-e-type=\"widget\" title=\"Get lifetime access\" data-widget_type=\"button.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t\t\t\t\t<div class=\"elementor-button-wrapper\">\n\t\t\t\t\t<a class=\"elementor-button elementor-button-link elementor-size-sm\" href=\"https:\/\/calendly.com\/xoap\/30min\" target=\"_blank\" title=\"Book a demo\">\n\t\t\t\t\t\t<span class=\"elementor-button-content-wrapper\">\n\t\t\t\t\t\t\t\t\t<span class=\"elementor-button-text\">Book a demo<\/span>\n\t\t\t\t\t<\/span>\n\t\t\t\t\t<\/a>\n\t\t\t\t<\/div>\n\t\t\t\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t","protected":false},"excerpt":{"rendered":"<p>Si vous g\u00e9rez des environnements cloud, vous savez le temps que prend la s\u00e9curisation de chaque nouveau compte AWS. XOAP change cela. D\u00e8s que vous connectez un compte, il est automatiquement renforc\u00e9 pour r\u00e9pondre aux benchmarks CIS.<\/p>","protected":false},"author":9,"featured_media":25686,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"site-sidebar-layout":"default","site-content-layout":"","ast-site-content-layout":"default","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","ast-disable-related-posts":"","theme-transparent-header-meta":"","adv-header-id-meta":"","stick-header-meta":"","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"default","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"var(--ast-global-color-4)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"footnotes":""},"categories":[1],"tags":[36,106,224],"class_list":["post-25631","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-tutorials","tag-automation","tag-aws","tag-cis"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.8 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Automatically harden AWS accounts with CIS benchmarks | XOAP<\/title>\n<meta name=\"description\" content=\"With XOAP, your AWS accounts become CIS compliant instantly upon connection for automated security and continuous compliance.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/xoap.io\/fr\/automatically-harden-aws-accounts-with-cis-benchmarks\/\" \/>\n<meta property=\"og:locale\" content=\"fr_FR\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Automatically harden AWS accounts with CIS benchmarks | XOAP\" \/>\n<meta property=\"og:description\" content=\"With XOAP, your AWS accounts become CIS compliant instantly upon connection for automated security and continuous compliance.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/xoap.io\/fr\/automatically-harden-aws-accounts-with-cis-benchmarks\/\" \/>\n<meta property=\"og:site_name\" content=\"XOAP\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/XOAP.io\" \/>\n<meta property=\"article:published_time\" content=\"2025-09-30T07:00:39+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2025-11-17T09:32:00+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/aws-cis-accounts-automated-with-xoap.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1024\" \/>\n\t<meta property=\"og:image:height\" content=\"600\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Stella\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:title\" content=\"Automatically harden AWS accounts with CIS benchmarks | XOAP\" \/>\n<meta name=\"twitter:description\" content=\"With XOAP, your AWS accounts become CIS compliant instantly upon connection for automated security and continuous compliance.\" \/>\n<meta name=\"twitter:image\" content=\"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/aws-cis-accounts-automated-with-xoap.png\" \/>\n<meta name=\"twitter:creator\" content=\"@xoap_io\" \/>\n<meta name=\"twitter:site\" content=\"@xoap_io\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/xoap.io\\\/automatically-harden-aws-accounts-with-cis-benchmarks\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/xoap.io\\\/automatically-harden-aws-accounts-with-cis-benchmarks\\\/\"},\"author\":{\"name\":\"Stella\",\"@id\":\"https:\\\/\\\/xoap.io\\\/#\\\/schema\\\/person\\\/314d29f4cf90a9d71083d89152fd5d44\"},\"headline\":\"How to automate AWS CIS hardening\",\"datePublished\":\"2025-09-30T07:00:39+00:00\",\"dateModified\":\"2025-11-17T09:32:00+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/xoap.io\\\/automatically-harden-aws-accounts-with-cis-benchmarks\\\/\"},\"wordCount\":701,\"publisher\":{\"@id\":\"https:\\\/\\\/xoap.io\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/xoap.io\\\/automatically-harden-aws-accounts-with-cis-benchmarks\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/xoap.io\\\/wp-content\\\/uploads\\\/2025\\\/09\\\/aws-cis-accounts-automated-with-xoap.png\",\"keywords\":[\"automation\",\"aws\",\"cis\"],\"articleSection\":[\"Tutorials\"],\"inLanguage\":\"fr-FR\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/xoap.io\\\/automatically-harden-aws-accounts-with-cis-benchmarks\\\/\",\"url\":\"https:\\\/\\\/xoap.io\\\/automatically-harden-aws-accounts-with-cis-benchmarks\\\/\",\"name\":\"Automatically harden AWS accounts with CIS benchmarks | XOAP\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/xoap.io\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/xoap.io\\\/automatically-harden-aws-accounts-with-cis-benchmarks\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/xoap.io\\\/automatically-harden-aws-accounts-with-cis-benchmarks\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/xoap.io\\\/wp-content\\\/uploads\\\/2025\\\/09\\\/aws-cis-accounts-automated-with-xoap.png\",\"datePublished\":\"2025-09-30T07:00:39+00:00\",\"dateModified\":\"2025-11-17T09:32:00+00:00\",\"description\":\"With XOAP, your AWS accounts become CIS compliant instantly upon connection for automated security and continuous compliance.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/xoap.io\\\/automatically-harden-aws-accounts-with-cis-benchmarks\\\/#breadcrumb\"},\"inLanguage\":\"fr-FR\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/xoap.io\\\/automatically-harden-aws-accounts-with-cis-benchmarks\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\\\/\\\/xoap.io\\\/automatically-harden-aws-accounts-with-cis-benchmarks\\\/#primaryimage\",\"url\":\"https:\\\/\\\/xoap.io\\\/wp-content\\\/uploads\\\/2025\\\/09\\\/aws-cis-accounts-automated-with-xoap.png\",\"contentUrl\":\"https:\\\/\\\/xoap.io\\\/wp-content\\\/uploads\\\/2025\\\/09\\\/aws-cis-accounts-automated-with-xoap.png\",\"width\":1024,\"height\":600,\"caption\":\"AWS CIS accounts automated with XOAP\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/xoap.io\\\/automatically-harden-aws-accounts-with-cis-benchmarks\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/xoap.io\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"How to automate AWS CIS hardening\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/xoap.io\\\/#website\",\"url\":\"https:\\\/\\\/xoap.io\\\/\",\"name\":\"XOAP\",\"description\":\"Platform for IT infrastructure and workplace automation\",\"publisher\":{\"@id\":\"https:\\\/\\\/xoap.io\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/xoap.io\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"fr-FR\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/xoap.io\\\/#organization\",\"name\":\"XOAP\",\"url\":\"https:\\\/\\\/xoap.io\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\\\/\\\/xoap.io\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/xoap.io\\\/wp-content\\\/uploads\\\/2023\\\/11\\\/XOAP-no-lettering-transparent_no-boarder.svg\",\"contentUrl\":\"https:\\\/\\\/xoap.io\\\/wp-content\\\/uploads\\\/2023\\\/11\\\/XOAP-no-lettering-transparent_no-boarder.svg\",\"width\":250,\"height\":90,\"caption\":\"XOAP\"},\"image\":{\"@id\":\"https:\\\/\\\/xoap.io\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/XOAP.io\",\"https:\\\/\\\/x.com\\\/xoap_io\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/xoap_io\",\"https:\\\/\\\/www.youtube.com\\\/@xoap_io\",\"https:\\\/\\\/github.com\\\/xoap-io\",\"https:\\\/\\\/www.instagram.com\\\/xoap_io\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/xoap.io\\\/#\\\/schema\\\/person\\\/314d29f4cf90a9d71083d89152fd5d44\",\"name\":\"Stella\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/6bc7467073a5706bfd15edebaed2274b66edc632ad28e8b70c694c3136fb36d5?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/6bc7467073a5706bfd15edebaed2274b66edc632ad28e8b70c694c3136fb36d5?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/6bc7467073a5706bfd15edebaed2274b66edc632ad28e8b70c694c3136fb36d5?s=96&d=mm&r=g\",\"caption\":\"Stella\"},\"url\":\"https:\\\/\\\/xoap.io\\\/fr\\\/author\\\/stella\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Automatically harden AWS accounts with CIS benchmarks | XOAP","description":"With XOAP, your AWS accounts become CIS compliant instantly upon connection for automated security and continuous compliance.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/xoap.io\/fr\/automatically-harden-aws-accounts-with-cis-benchmarks\/","og_locale":"fr_FR","og_type":"article","og_title":"Automatically harden AWS accounts with CIS benchmarks | XOAP","og_description":"With XOAP, your AWS accounts become CIS compliant instantly upon connection for automated security and continuous compliance.","og_url":"https:\/\/xoap.io\/fr\/automatically-harden-aws-accounts-with-cis-benchmarks\/","og_site_name":"XOAP","article_publisher":"https:\/\/www.facebook.com\/XOAP.io","article_published_time":"2025-09-30T07:00:39+00:00","article_modified_time":"2025-11-17T09:32:00+00:00","og_image":[{"width":1024,"height":600,"url":"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/aws-cis-accounts-automated-with-xoap.png","type":"image\/png"}],"author":"Stella","twitter_card":"summary_large_image","twitter_title":"Automatically harden AWS accounts with CIS benchmarks | XOAP","twitter_description":"With XOAP, your AWS accounts become CIS compliant instantly upon connection for automated security and continuous compliance.","twitter_image":"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/aws-cis-accounts-automated-with-xoap.png","twitter_creator":"@xoap_io","twitter_site":"@xoap_io","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#article","isPartOf":{"@id":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/"},"author":{"name":"Stella","@id":"https:\/\/xoap.io\/#\/schema\/person\/314d29f4cf90a9d71083d89152fd5d44"},"headline":"How to automate AWS CIS hardening","datePublished":"2025-09-30T07:00:39+00:00","dateModified":"2025-11-17T09:32:00+00:00","mainEntityOfPage":{"@id":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/"},"wordCount":701,"publisher":{"@id":"https:\/\/xoap.io\/#organization"},"image":{"@id":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#primaryimage"},"thumbnailUrl":"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/aws-cis-accounts-automated-with-xoap.png","keywords":["automation","aws","cis"],"articleSection":["Tutorials"],"inLanguage":"fr-FR"},{"@type":"WebPage","@id":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/","url":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/","name":"Automatically harden AWS accounts with CIS benchmarks | XOAP","isPartOf":{"@id":"https:\/\/xoap.io\/#website"},"primaryImageOfPage":{"@id":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#primaryimage"},"image":{"@id":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#primaryimage"},"thumbnailUrl":"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/aws-cis-accounts-automated-with-xoap.png","datePublished":"2025-09-30T07:00:39+00:00","dateModified":"2025-11-17T09:32:00+00:00","description":"With XOAP, your AWS accounts become CIS compliant instantly upon connection for automated security and continuous compliance.","breadcrumb":{"@id":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#breadcrumb"},"inLanguage":"fr-FR","potentialAction":[{"@type":"ReadAction","target":["https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/"]}]},{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#primaryimage","url":"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/aws-cis-accounts-automated-with-xoap.png","contentUrl":"https:\/\/xoap.io\/wp-content\/uploads\/2025\/09\/aws-cis-accounts-automated-with-xoap.png","width":1024,"height":600,"caption":"AWS CIS accounts automated with XOAP"},{"@type":"BreadcrumbList","@id":"https:\/\/xoap.io\/automatically-harden-aws-accounts-with-cis-benchmarks\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/xoap.io\/"},{"@type":"ListItem","position":2,"name":"How to automate AWS CIS hardening"}]},{"@type":"WebSite","@id":"https:\/\/xoap.io\/#website","url":"https:\/\/xoap.io\/","name":"XOAP","description":"Plate-forme pour l'infrastructure informatique et l'automatisation du lieu de travail","publisher":{"@id":"https:\/\/xoap.io\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/xoap.io\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"fr-FR"},{"@type":"Organization","@id":"https:\/\/xoap.io\/#organization","name":"XOAP","url":"https:\/\/xoap.io\/","logo":{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/xoap.io\/#\/schema\/logo\/image\/","url":"https:\/\/xoap.io\/wp-content\/uploads\/2023\/11\/XOAP-no-lettering-transparent_no-boarder.svg","contentUrl":"https:\/\/xoap.io\/wp-content\/uploads\/2023\/11\/XOAP-no-lettering-transparent_no-boarder.svg","width":250,"height":90,"caption":"XOAP"},"image":{"@id":"https:\/\/xoap.io\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/XOAP.io","https:\/\/x.com\/xoap_io","https:\/\/www.linkedin.com\/company\/xoap_io","https:\/\/www.youtube.com\/@xoap_io","https:\/\/github.com\/xoap-io","https:\/\/www.instagram.com\/xoap_io"]},{"@type":"Person","@id":"https:\/\/xoap.io\/#\/schema\/person\/314d29f4cf90a9d71083d89152fd5d44","name":"Stella","image":{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/secure.gravatar.com\/avatar\/6bc7467073a5706bfd15edebaed2274b66edc632ad28e8b70c694c3136fb36d5?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/6bc7467073a5706bfd15edebaed2274b66edc632ad28e8b70c694c3136fb36d5?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/6bc7467073a5706bfd15edebaed2274b66edc632ad28e8b70c694c3136fb36d5?s=96&d=mm&r=g","caption":"Stella"},"url":"https:\/\/xoap.io\/fr\/author\/stella\/"}]}},"_links":{"self":[{"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/posts\/25631","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/users\/9"}],"replies":[{"embeddable":true,"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/comments?post=25631"}],"version-history":[{"count":39,"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/posts\/25631\/revisions"}],"predecessor-version":[{"id":25980,"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/posts\/25631\/revisions\/25980"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/media\/25686"}],"wp:attachment":[{"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/media?parent=25631"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/categories?post=25631"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/xoap.io\/fr\/wp-json\/wp\/v2\/tags?post=25631"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}