Reports for Every Cloud

Purpose-built reports that answer the questions cloud and security teams actually ask — across AWS, Azure, and Google Cloud.

58
Curated Reports
1705+
Controls Checked
3
Cloud Providers
5 min
To First Results
ASecureCloud report preview
AWS logo

Organization Governance Best Practices

21 controls
14 services covered

Reviews account and organization governance — account contacts, AWS Organizations and delegated administrators, AWS Config, Service Quotas, Budgets, Cost Explorer anomaly detection, RAM sharing, and Service Catalog.

What we check

Organizations Delegated Administration3
  • Access Analyzer Management is Delegated in the Organization
  • AWS Organizations delegated administrators should be reviewed
  • Security service delegated administrators should be configured in AWS Organizations
AWS Config Settings3
  • Ensure that AWS Config is Enabled
  • Ensure that AWS Config Records All Supported Resources (Including Global Resources)
  • AWS Config should be enabled and use the service-linked role for resource recording
Service Quotas Templates2
  • Service Quota Organizations Request Template is Enabled
  • Service Quota Request Template is Configured
AWS Budgets2
  • AWS Cost Budget Defined
  • AWS Budget Notifications Defined
Cost Anomaly Detection2
  • AWS Cost Anomaly Detection is Enabled
  • Cost Anomaly Detection has a Subscription Defined
AWS Account1
  • Security Contact Information Configured for the AWS Account
Organization CloudTrail Trails1
  • Organizations CloudTrail Trail is Enabled
Organizations Backup Policies1
  • AWS Organizations Backup Policies Configured
Organizations Tag Policies1
  • AWS Organizations Tag Policies Enabled
AWS Organizations Settings1
  • Ensure All Features are Enabled for the Organization
Organizations Service Control Policies1
  • AWS Organizations service control policies should be configured
EventBridge Finding Alert Rules1
  • Real-Time Alerts Configured for Config Compliance Events
Resource Access Manager Shares1
  • Resource Shares Shared Inside Organization Only
Service Catalog Portfolios1
  • Service Catalog portfolios should be shared within an AWS organization only

Run these reports on your own cloud

Connect an account and get your first set of reports in minutes — free to start, no credit card required.