What problem does it solve? Manually checking an AWS account for security misconfigurations across IAM, networking, storage, and logging services is slow and error-prone. This Skill provides ready-to-run audit commands and scripts that surface vulnerabilities like open security groups, unencrypted volumes, and users without MFA. ## Core Features & Use Cases - IAM Security Checks: Detect users without MFA, stale access keys, unused accounts, and overly permissive policies. - Network & Data Protection Audits: Find security groups open to 0.0.0.0/0, public S3 buckets, unencrypted EBS volumes and RDS instances, and public RDS snapshots. - Logging & Compliance Reporting: Verify CloudTrail, AWS Config, VPC Flow Logs, and S3 access logging, with findings mapped to CIS, PCI-DSS, and HIPAA controls plus prioritized remediation guidance. - Use Case: Before a compliance review, run the comprehensive audit script to generate a report of misconfigurations, then use the remediation priority list to fix critical issues like public snapshots and disabled CloudTrail first. ## Quick Start Ask the AI to run a comprehensive security audit on your AWS account and report any misconfigurations with remediation priorities.