This product has charges associated with it for seller hardening and maintenance support. The Foundation DISA STIG Compliant Oracle Linux 9 is designed to help organizations meet the stringent requirements of the Defense Information Systems Agency Security Technical Implementation Guides (DISA STIG), enhancing the security and reliability of their systems.
The Defense Information Systems Agency Security Technical Implementation Guides (DISA STIG) provide a comprehensive set of guidelines for securing information systems and software used by the U.S. Department of Defense. Compliance with DISA STIG ensures that systems are equipped with robust security controls to protect against a wide range of cyber threats. This is critical for organizations operating in highly sensitive and secure environments, such as defense and government sectors.
This Oracle Linux 9 virtual machine image is hardened with hundreds of security controls built-in to ensure the confidentiality, integrity, and availability of sensitive data. With this preconfigured Oracle Linux 9 image, companies can easily deploy a DISA STIG-compliant environment, reducing the time and resources required for security implementation. Foundation Security's image is regularly updated to keep up with the latest security threats and compliance regulations, providing customers with confidence that their data is well-protected. This offering is ideal for organizations that require a secure and compliant environment to protect their sensitive information.
Foundation Security has a team of industry experts with deep knowledge of security and compliance regulations. This ensures that their virtual machine image is well-designed and implemented with the highest level of security standards. Additionally, their experienced team provides ongoing support to ensure their customers' security needs are met. As proud AWS Partners, Foundation Security's images are used by several Fortune 500 companies, demonstrating the reliability and trustworthiness of their solutions.
Highlights
Enhanced Security and Compliance: Foundation Security's VMs are hardened with hundreds of security controls and are regularly updated to comply with the latest security standards, ensuring robust protection for sensitive data.
Expert Support and Maintenance: Our team of industry experts provides ongoing support and maintenance, helping customers quickly deploy and manage compliant environments with minimal effort.
Trusted by Leading Organizations: As proud AWS Partners, our VMs are trusted and used by several Fortune 500 companies, offering a proven solution for secure and compliant virtual machine deployments.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on actual usage, with charges varying according to how much you consume. Subscriptions have no end date and may be canceled any time. Alternatively, you can pay upfront for a contract, which typically covers your anticipated usage for the contract duration. Any usage beyond contract will incur additional usage-based costs.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
If you are an AWS Free Tier customer with a free plan, you are eligible to subscribe to this offer. You can use free credits to cover the cost of eligible AWS infrastructure. See AWS Free Tier for more details. If you created an AWS account before July 15th, 2025, and qualify for the Legacy AWS Free Tier, Amazon EC2 charges for Micro instances are free for up to 750 hours per month. See Legacy AWS Free Tier for more details.
You pay by the hour for STIG Compliant Oracle Linux 9, with no upfront commitment. Pricing follows the EC2 instance type you choose to run the software. Each instance type is a separate hourly rate, so your cost scales with the size and family of the machine you select. Options span general-purpose, compute-optimized, memory-optimized, storage-optimized, GPU, high-performance computing, and large-memory instances. Larger instances within a family carry higher hourly rates than smaller ones. You match the instance type to your workload needs and pay only for the hours you use.
Top-of-mind questions for buyers
What am I actually paying for with the hourly rate?
You pay for the pre-hardened Oracle Linux 9 software running on the EC2 instance you launch. The rate covers the STIG-hardened operating system image. Standard AWS infrastructure charges for the instance itself are billed separately by AWS. Support is available on demand from the vendor.
Am I charged when the instance is stopped or powered off?
The software charge meters running instance-hours only. When you stop or power off an instance, the hourly software charge stops accruing. Note that AWS may still bill for attached storage on stopped instances, but that is separate from the software rate shown here.
Why do the hourly rates differ so much across the instance types listed?
Each rate maps to a specific EC2 instance type. Rates track the size and family of the machine, so a small general-purpose instance costs less per hour than a large GPU or high-memory instance. You pick the type that fits your workload and pay that type's rate.
foundationvm.com
Helpful?
Vendor refund policy
Refunds through AWS are not available at this time. You will only be billed for actual time of instance use. As with all Foundation Security products, our aim is always 100 percent customer/member satisfaction.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
An AMI is a virtual image that provides the information required to launch an instance. Amazon EC2 (Elastic Compute Cloud) instances are virtual servers on which you can run your applications and workloads, offering varying combinations of CPU, memory, storage, and networking resources. You can launch as many instances from as many different AMIs as you need.
Utilizing hardened images necessitates a nuanced approach due to their advanced security configurations and access controls, which may require additional adjustments for compatibility with specific workflows or applications. These images are designed with enhanced security measures to minimize vulnerabilities, offering superior protection compared to baseline images without pre-configured security settings. However, integrating them seamlessly into your operations might involve collaboration with security experts or providers for customization, ensuring both robust security and operational functionality. This extra step, while requiring more initial setup, positions hardened images as a more secure and compliant foundation for deployments, ultimately offering a significant advantage over baseline images by saving time and resources in achieving a secure, compliant, and efficient infrastructure.
Additional Details
No additional external resources are required for the product to function.
There are no security keys or credentials in place that need to be rotated.
There is no customer data that is collected for this software to function.
Our knowledgeable support team is readily available to answer any questions you may have regarding our virtual machine images. Please feel free to contact us if you need any further information - we are always here to help. Reach out directly at support@foundationvm.com
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
This product has charges associated with it for seller hardening and maintenance support. The Foundation DISA STIG Compliant Oracle Linux 9 is designed to help organizations meet the stringent requirements of the Defense Information Systems Agency Security Technical Implementation Guides (DISA STIG), enhancing the security and reliability of their systems.
This product has charges associated with it for providing hardening and seller premium support. Engineered for mission-critical, regulated environments, this STIG-compliant Oracle Linux 9 image delivers a fully hardened security baseline trusted across government, defense, healthcare, and financial sectors.
This product has charges associated with it for providing hardening and seller premium support. Engineered for mission-critical, regulated environments, this STIG-compliant Oracle Linux 9 image delivers a fully hardened security baseline trusted across government, defense, healthcare, and financial sectors.
This product has charges associated with it for providing hardening and seller premium support. Engineered for mission-critical, regulated environments, this STIG-compliant Oracle Linux 8.9 image delivers a fully hardened security baseline trusted across government, defense, healthcare, and financial sectors.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.