ControlMonkey now supports the AWS FSBP (Foundational Security Best Practices) policy package, giving cloud teams a fast path to enforce this compliance package across cloud infrastructure.
As modern cloud teams shift from a reactive to a proactive approach to security, the most logical step is to start enforcing policies at the Infrastructure as Code (IaC) level — treating risks at the source.
Introducing the AWS “Foundational Security Best Practices” Package
ControlMonkey’s latest compliance pack brings full support for the AWS Foundational Security Best Practices standard — curated by AWS to help teams strengthen cloud security posture.
- Apply AWS FSBP instantly across stacks, namespaces, or environments
- Based on the AWS Security Hub standard for foundational security best practices
- Enforce security guardrails developed by AWS, without custom code
- Catch violations proactively before they reach production
- Get alerts on violations in your existing code with periodic scans of your IaC
- Combine with CIS, NIST, and PCI DSS for comprehensive governance
Stay Ahead with Cloud Governance and Infrastructure Control
The new package is another addition to ControlMonkey’s standard security bundles, alongside frameworks like CIS, PCI-DSS, NIST, and others – relieving cloud teams from the undifferentiated work of writing and maintaining policies
With ControlMonkey’s AWS FSBP Policy Package, you can:
- Identify misconfigurations and gaps in AWS security posture
- Prevent non-compliant infrastructure changes before they’re applied
- Enforce AWS Foundational Security Best Practices by default
- Apply consistent policy controls across IaC-managed AWS resources
- Eliminate manual checks and reduce operational overhead
Ready to enforce AWS FSBP the easy way?
Explore the AWS FSBP Policy Package in ControlMonkey today.

FAQ - AWS FSBP And ControlMonkey
Yes. AWS FSBP is a predefined security standard available within AWS Security Hub. ControlMonkey enforces these controls proactively across your infrastructure.
Yes. ControlMonkey turns AWS Security Hub’s FSBP findings into proactive policies that block non-compliant changes before deployment.