This product has charges associated with it for seller hardening and maintenance support. The Foundation DISA STIG Compliant Rocky Linux 8 is designed to help organizations meet the stringent requirements of the Defense Information Systems Agency Security Technical Implementation Guides (DISA STIG), enhancing the security of their systems.
The Defense Information Systems Agency Security Technical Implementation Guides (DISA STIG) provide a comprehensive set of guidelines for securing information systems and software used by the U.S. Department of Defense. Compliance with DISA STIG ensures that systems are equipped with robust security controls to protect against a wide range of cyber threats. This is critical for organizations operating in highly sensitive and secure environments, such as defense and government sectors.
This Rocky Linux 8 virtual machine image is hardened with hundreds of security controls built-in to ensure the confidentiality, integrity, and availability of sensitive data. With this preconfigured Rocky Linux 8 image, companies can easily deploy a DISA STIG-compliant environment, reducing the time and resources required for security implementation. Foundation Security's image is regularly updated to keep up with the latest security threats and compliance regulations, providing customers with confidence that their data is well-protected. This offering is ideal for organizations that require a secure and compliant environment to protect their sensitive information.
Foundation Security has a team of industry experts with deep knowledge of security and compliance regulations. This ensures that their virtual machine image is well-designed and implemented with the highest level of security standards. Additionally, their experienced team provides ongoing support to ensure their customers' security needs are met. As proud AWS Partners, Foundation Security's images are used by several Fortune 500 companies, demonstrating the reliability and trustworthiness of their solutions.
Highlights
Enhanced Security and Compliance: Foundation Security's VMs are hardened with hundreds of security controls and are regularly updated to comply with the latest security standards, ensuring robust protection for sensitive data.
Expert Support and Maintenance: Our team of industry experts provides ongoing support and maintenance, helping customers quickly deploy and manage compliant environments with minimal effort.
Trusted by Leading Organizations: As proud AWS Partners, our VMs are trusted and used by several Fortune 500 companies, offering a proven solution for secure and compliant virtual machine deployments.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on actual usage, with charges varying according to how much you consume. Subscriptions have no end date and may be canceled any time. Alternatively, you can pay upfront for a contract, which typically covers your anticipated usage for the contract duration. Any usage beyond contract will incur additional usage-based costs.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
You pay by the hour for a hardened Rocky Linux 8 image on 64-bit ARM (Graviton) EC2 instances. The image applies STIG and NIST hardening frameworks. Pricing is not tiered. Instead, you pick the EC2 instance type that fits your workload, and the hourly software rate matches that instance's size and family. Options span general-purpose, compute-optimized, memory-optimized, storage-optimized, and bare-metal families. Rates scale with instance size, from small shared instances up to large multi-core and metal configurations. Your total cost combines this hourly software charge with the separate AWS charge for the instance you run.
Top-of-mind questions for buyers
What does the hourly software rate cover, and what do I pay separately?
The hourly rate covers the hardened Rocky Linux 8 ARM software license only. You pay AWS separately for the EC2 instance you run it on. Both charges appear on the same AWS bill. Storage, data transfer, and other AWS resources are also billed by AWS, not by this listing.
Am I charged the software rate when my instance is stopped?
The hourly software charge meters running time. A stopped or powered-off instance does not accrue software charges. You may still pay AWS for attached storage while the instance is stopped. Charges resume when you start the instance again.
How do the many instance-type options change what I pay per hour?
Each listed instance type carries its own hourly software rate. Rates track the instance family and size, so larger multi-core and bare-metal types cost more per hour than small shared ones. You pick one type per running instance; there are no tiers to reach or upgrade between.
foundationvm.com
Helpful?
Vendor refund policy
Refunds through AWS are not available at this time. You will only be billed for actual time of instance use. As with all Foundation Security products, our aim is always 100 percent customer/member satisfaction.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Version release notes
June 2026 maintenance release: latest OS security updates applied
Additional details
Usage instructions
Connect over SSH using the key pair selected at launch. The default user is shown above. See the listing's usage instructions for full details.
Our knowledgeable support team is readily available to answer any questions you may have regarding our virtual machine images. Please feel free to contact us if you need any further information - we are always here to help. Reach out directly at support@foundationvm.com
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
This product has charges associated with it for security hardening. This AWS-based ec2 is pre-configured with the latest Ubuntu 24.04 LTS image, hardened and optimized for security and to help address DISA STIG compliance needs.
The Simplesense Ubuntu Pro FIPS 22.04 LTS AMI is hardened per DoD policy and security controls and tested against the latest DISA STIG benchmarks. Simplesense developed this AMI to accelerate adoption of secure baselines and provides end-users with scan artifacts to enable rapid implementation, integration, and compliance.
This product has charges associated with it for seller hardening and maintenance support. The Foundation DISA STIG Compliant CentOS 9 is designed to help organizations meet the stringent requirements of the Defense Information Systems Agency Security Technical Implementation Guides (DISA STIG), enhancing the security of their systems..
This product has charges associated with it for security hardening. This AWS-based ec2 is pre-configured with the latest Red Hat Enterprise Linux 9 image, hardened and optimized for security and to help address DISA STIG compliance needs.
This product has charges associated with it for security hardening. This AWS-based ec2 is pre-configured with the latest Red Hat Enterprise Linux 8 image, hardened and optimized for security and to help address DISA STIG compliance needs.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.