The Center for Internet Security benchmarks
CIS publishes security benchmarks that describe the security configuration of any number of infrastructure components. This includes all facets of several different Linux distributions, as well as many applications that might be deployed on Linux. These benchmarks are very "prescriptive" – each recommendation in a benchmark describes the problem, how to resolve it using OS commands or configurations, and how to audit for the current state of the setting.
A very attractive feature of the CIS benchmarks is that they are written and maintained by groups of industry experts who volunteer their time to make the internet a safer place. While vendors do participate in developing these documents, they are group efforts and the final recommendations need the consensus of the group. The end result is a vendor-agnostic, consensus- and community-driven document with very specific recommendations.
The CIS benchmarks are created...