High GuardDuty Regional

GuardDuty EKS Runtime Monitoring should be enabled

PCI DSS v4.0.1PCI DSS v11.5.1

Description

Ensures GuardDuty EKS Runtime Monitoring with automated agent management is enabled across all accounts, providing threat detection coverage for EKS workloads.


Remediation

To enable GuardDuty EKS Runtime Monitoring, you need to configure the EKS Runtime Monitoring settings in GuardDuty.

Steps

  1. Navigate to the Amazon GuardDuty console
  2. Go to 'Settings' in the left navigation
  3. Select 'EKS Protection'
  4. Enable 'EKS Runtime Monitoring'
  5. Configure the automated agent management settings
  6. Save the configuration
  7. Verify that EKS Runtime Monitoring is active

Compliance

PCI DSS v4.0.1PCI DSS v11.5.1