High
GuardDuty
Regional
GuardDuty EKS Runtime Monitoring should be enabled
PCI DSS v4.0.1PCI DSS v11.5.1
Description
Ensures GuardDuty EKS Runtime Monitoring with automated agent management is enabled across all accounts, providing threat detection coverage for EKS workloads.
Remediation
To enable GuardDuty EKS Runtime Monitoring, you need to configure the EKS Runtime Monitoring settings in GuardDuty.
Steps
- Navigate to the Amazon GuardDuty console
- Go to 'Settings' in the left navigation
- Select 'EKS Protection'
- Enable 'EKS Runtime Monitoring'
- Configure the automated agent management settings
- Save the configuration
- Verify that EKS Runtime Monitoring is active
Compliance
PCI DSS v4.0.1PCI DSS v11.5.1