
CIS Red Hat Enterprise Linux offers an objective, consensus-driven security guideline for the Red Hat Linux Operating Systems.
The CIS Microsoft Windows Server 2019 Benchmark - Level 1 is a comprehensive set of security configuration guidelines developed through a community consensus process. These benchmarks are designed to help organizations secure their Microsoft Windows Server 2019 environments by providing detailed recommendations for system hardening. By adhering to these guidelines, organizations can enhance their security posture and protect against various cyber threats. Key Features and Functionality: - Comprehensive Security Recommendations: The benchmark offers a wide range of security settings and configurations tailored specifically for Windows Server 2019, covering areas such as account policies, audit policies, and user rights assignments. - Community-Driven Development: Developed through a consensus process involving a global community of IT experts, ensuring that the recommendations are both practical and effective. - Regular Updates: The benchmarks are periodically updated to address emerging threats and incorporate feedback from the user community, ensuring that the guidelines remain current and relevant. Primary Value and Problem Solved: The primary value of the CIS Microsoft Windows Server 2019 Benchmark - Level 1 lies in its ability to provide organizations with a structured and reliable approach to securing their Windows Server 2019 environments. By implementing these benchmarks, organizations can: - Enhance Security Posture: Apply industry-recognized best practices to reduce vulnerabilities and protect against potential cyber threats. - Achieve Compliance: Meet regulatory and compliance requirements by adhering to standardized security configurations. - Simplify Security Management: Utilize clear and actionable guidelines to streamline the process of securing Windows Server 2019 systems. Overall, the CIS Microsoft Windows Server 2019 Benchmark - Level 1 serves as a valuable resource for organizations seeking to implement robust security measures and maintain a secure IT infrastructure.

The CIS AMI for Ubuntu Linux 20.04 LTS is hardened in accordance with the associated CIS Benchmark that has been developed by consensus to be the industry best practice for secure configuration. Reduce cost, time, and risk by building your AWS solution with CIS AMIs.
The CIS Amazon Linux 2 STIG Benchmark is a security-hardened Amazon Machine Image (AMI) developed by the Center for Internet Security (CIS for deployment on Amazon Web Services (AWS). This pre-configured image aligns with the Security Technical Implementation Guide (STIG standards, providing organizations with a robust foundation to meet stringent security and compliance requirements. By integrating the CIS Benchmarks, this AMI offers a secure configuration that simplifies the process of achieving regulatory compliance and enhances the overall security posture of systems running on Amazon Linux 2. Key Features and Functionality: - Pre-Hardened Configuration: The image is pre-configured according to the CIS Benchmarks, ensuring a secure setup from the outset. - STIG Alignment: It adheres to the STIG standards, facilitating compliance with Department of Defense (DoD security requirements. - Regular Updates: The AMI is patched monthly in alignment with updates from the software vendor, maintaining up-to-date security measures. - Simplified Compliance: By using this hardened image, organizations can reduce the time and effort required to configure systems to meet security standards. Primary Value and User Benefits: The CIS Amazon Linux 2 STIG Benchmark addresses the critical need for secure and compliant cloud environments. By providing a pre-hardened and regularly updated AMI, it enables organizations to: - Enhance Security: Deploy systems with a strong security foundation, reducing vulnerabilities and potential attack surfaces. - Achieve Compliance: Meet regulatory and organizational security requirements more efficiently, particularly those mandated by the DoD. - Save Time and Resources: Eliminate the need for manual system hardening, allowing IT teams to focus on other critical tasks. By leveraging this CIS-hardened image, organizations can confidently build and maintain secure AWS solutions that align with industry best practices.
The CIS CentOS Linux 8 Benchmark - Level 1 is a security-hardened virtual machine image designed to enhance the security posture of CentOS Linux 8 systems. Developed by the Center for Internet Security (CIS, this image is pre-configured according to the CIS Benchmarks, which are globally recognized best practices for secure system configurations. By implementing these guidelines, organizations can mitigate common security threats and streamline compliance with various regulatory standards. Key Features and Functionality: - Pre-Configured Security Settings: The image comes with security configurations aligned with the CIS CentOS Linux 8 Benchmark, ensuring a robust defense against vulnerabilities. - Regular Updates: It receives monthly patches in line with vendor updates, maintaining up-to-date security measures. - Compliance Support: Assists organizations in meeting compliance requirements for standards such as PCI DSS, FedRAMP, and NIST publications. - Consistent Deployment: Ensures uniform security configurations across development, testing, and production environments, reducing configuration drift. - Comprehensive Reporting: Includes detailed reports from the CIS Configuration Assessment Tool (CIS-CAT Pro, providing insights into the system's security status. Primary Value and Problem Solved: The CIS CentOS Linux 8 Benchmark - Level 1 addresses the critical need for secure and compliant system configurations in enterprise environments. By offering a pre-hardened image, it significantly reduces the time and effort required to secure CentOS Linux 8 systems, thereby lowering the risk of security incidents and ensuring adherence to industry standards. This solution is particularly valuable for organizations seeking to enhance their security posture without compromising system functionality.
The CIS Windows Server 2012 Benchmark - Level 2 is a comprehensive set of security guidelines developed by the Center for Internet Security (CIS to establish a robust configuration posture for Microsoft Windows Server 2012 environments. These benchmarks are designed to assist organizations in enhancing their security measures by providing detailed recommendations for system settings, policies, and configurations. Key Features and Functionality: - Detailed Security Recommendations: The benchmark offers in-depth guidance on configuring various aspects of Windows Server 2012, including system services, registry settings, group policies, and account policies. - Level 2 Security Settings: Level 2 benchmarks are intended for environments requiring heightened security, such as those handling sensitive data or operating in high-risk scenarios. - Comprehensive Coverage: The guidelines encompass a wide range of security controls, from access control measures to system and communications protection, ensuring a holistic approach to server security. Primary Value and Problem Solved: By implementing the CIS Windows Server 2012 Benchmark - Level 2, organizations can significantly reduce vulnerabilities and strengthen their defense against potential cyber threats. These benchmarks provide a standardized framework for securing Windows Server 2012 systems, aiding in compliance with various regulatory requirements and industry best practices. This proactive approach to security configuration helps organizations protect sensitive information, maintain system integrity, and ensure the availability of critical services.
The CIS NGINX on Ubuntu Linux 18.04 LTS Benchmark Level 1 Container Image is a pre-configured virtual image designed to provide a secure and efficient environment for deploying the NGINX web server. Developed by the Center for Internet Security (CIS, this container image integrates NGINX with Ubuntu 18.04 LTS, hardened according to the CIS Benchmarks—consensus-based, vendor-agnostic secure configuration guidelines. This combination ensures that organizations can deploy NGINX with enhanced security measures without compromising performance. Key Features and Functionality: - Pre-Hardened Security: The container image is configured in accordance with CIS Benchmarks, providing a secure foundation for NGINX deployments. - Optimized Performance: NGINX is renowned for its low memory usage and high concurrency, offering an asynchronous, event-driven approach where requests are handled in a single thread. - Flexible Deployment: Available as a container image, it allows for seamless integration into various cloud environments, including AWS, Azure, and Google Cloud Platform. - Community-Driven Standards: The CIS Benchmarks are developed through a global community of IT experts, ensuring up-to-date and widely accepted security configurations. Primary Value and User Solutions: This container image addresses the critical need for secure and efficient web server deployments. By combining NGINX's performance optimization with CIS's security hardening, organizations can confidently deploy web services that are both fast and secure. This solution is particularly beneficial for teams seeking to enhance their security posture without sacrificing computational efficiency, providing a ready-to-use, secure environment that reduces the time and effort required for manual configuration and hardening.
The CIS Ubuntu Linux 16.04 LTS Benchmark - Level 1 is a hardened Amazon Machine Image (AMI) designed to enhance the security posture of Ubuntu 16.04 LTS systems. Developed by the Center for Internet Security (CIS, this AMI adheres to the Level 1 security configuration guidelines outlined in the CIS Benchmark for Ubuntu Linux 16.04 LTS. It provides organizations with a pre-configured, secure environment that aligns with industry-recognized best practices, facilitating compliance and reducing the risk of security vulnerabilities. Key Features and Functionality: - Pre-Configured Security Settings: The AMI comes with security configurations that meet the Level 1 recommendations of the CIS Benchmark, ensuring a secure baseline for system deployment. - Regular Updates: The image is maintained to include the latest security patches and updates, helping to protect against known vulnerabilities. - Compatibility: Designed specifically for Ubuntu 16.04 LTS, it ensures compatibility with applications and services that require this operating system version. - Ease of Deployment: Available on the AWS Marketplace, the AMI can be easily launched and integrated into existing AWS environments, streamlining the deployment process. Primary Value and Problem Solved: By utilizing the CIS Ubuntu Linux 16.04 LTS Benchmark - Level 1 AMI, organizations can significantly enhance their security posture without the need for extensive manual configuration. This solution addresses common security challenges by providing a system that is pre-hardened according to established best practices, thereby reducing the time and effort required to achieve compliance and mitigate potential security risks. It is particularly beneficial for organizations seeking to deploy secure Ubuntu 16.04 LTS instances in the cloud, ensuring a robust foundation for their applications and services.
The CIS Debian Linux 9 Benchmark - Level 1 is a security-hardened Amazon Machine Image (AMI) developed by the Center for Internet Security (CIS for deployment on Amazon Web Services (AWS). This AMI is pre-configured to align with the CIS Benchmarks, which are globally recognized best practices for secure system configurations. By implementing these guidelines, the image enhances the security posture of Debian Linux 9 environments, assisting organizations in meeting various regulatory and compliance requirements. Key Features and Functionality: - Pre-Configured Security Settings: The image comes with security configurations that adhere to the CIS Benchmarks, reducing the need for manual setup and ensuring a consistent security baseline. - Regular Updates: The AMI is updated monthly to incorporate the latest security patches and updates from the software vendor, maintaining ongoing protection against emerging threats. - Compliance Support: By following the CIS Benchmarks, the image aids organizations in achieving compliance with standards such as PCI DSS, FedRAMP, and FISMA. - Enhanced Security Measures: The Level 1 profile focuses on practical and prudent security configurations that provide clear security benefits without significantly impacting system performance or usability. Primary Value and Problem Solved: The CIS Debian Linux 9 Benchmark - Level 1 AMI addresses the critical need for secure and compliant cloud-based operating environments. By offering a pre-hardened image that aligns with industry-recognized security standards, it simplifies the deployment of secure systems, reduces the time and effort required for manual security configurations, and helps organizations mitigate risks associated with misconfigurations and vulnerabilities. This solution is particularly valuable for organizations seeking to enhance their security posture while ensuring compliance with various regulatory frameworks.


The Center for Internet Security (CIS) is a nonprofit organization dedicated to enhancing cyber security preparedness and response through collaboration and innovation. CIS works with global communities to develop and promote the use of its well-known best practices, such as the CIS Controls and CIS Benchmarks, which help organizations safeguard their systems and data against cyber threats. The organization also operates the Multi-State Information Sharing and Analysis Center (MS-ISAC), which supports U.S. state, local, tribal, and territorial governments in improving their cybersecurity posture.