1.- Quick Wins

In this section we will cover functionalities or configurations that are simple to carry out or enable, and that add a lot of value to strengthen security. The “Quick Wins” or “Low hanging fruits”. All of these recommendations can be implemented in less than a week or two in most organizations and will achieve many improvements in your security posture.

Security governanceAssign Security contacts Select the region(s) to use and block the rest
Security assuranceEvaluate Cloud Security Posture (CSPM)
Identity and access managementMulti-Factor Authentication Root Account Protection Identity Federation Cleanup unintended accesses
Threat detectionDetect Common Threats Audit API calls Billing alarms
Vulnerability management
Infrastructure protectionCleanup risky open ports
Data protectionBlock Public Access Analyze data security posture
Application securityWAF with managed rules
Incident responseAct on Critical Security Findings
ResiliencyEvaluate Resilience