Reports for Every Cloud
Purpose-built reports that answer the questions cloud and security teams actually ask — across AWS, Azure, and Google Cloud.
58
Curated Reports
1705+
Controls Checked
3
Cloud Providers
5 min
To First Results

Network Security Controls
17 controls
8 services covered
Reviews explicit network security controls, including WAF, DDoS protection, subnet NSG associations, Network Watcher, gateway authentication and SKU, Bastion presence, load balancer and public IP SKU, peering state, and Application Gateway HTTP/2.
What we check
Web Application Firewall5
- Application Gateway WAF Enabled
- Application Gateway WAF Uses Specified Mode
- Web Application Firewall Policy Bot Protection Enabled
- Web Application Firewall Policy Request Body Inspection Enabled
- Front Door WAF Enabled
Network Gateway3
- Virtual Network Gateway Uses Azure AD Authentication Only
- Virtual Network Gateway Does Not Use Basic SKU
- At Least One Bastion Host Exists
Network Security Group Association2
- Network Security Group Associated to Subnet
- Network Security Group Not Associated to Gateway Subnet
Network Watcher2
- Network Watcher Enabled
- Network Watcher Enabled in Regions with Virtual Networks
Load Balancer and Public IP SKU2
- Load Balancer Does Not Use Basic SKU
- Public IP Does Not Use Basic SKU
DDoS Protection1
- Virtual Network DDoS Protection Enabled
Network Peering1
- Network Peering Connected
Application Gateway1
- Application Gateway HTTP2 Enabled
Run these reports on your own cloud
Connect an account and get your first set of reports in minutes — free to start, no credit card required.
