Ensure that security groups does not have TCP port 2375 or 2376 for Docker open to the public.
While some ports such as HTTP and HTTPS are required to be open to the public to function properly, more sensitive services such as Docker should be restricted to known IP addresses.
Restrict TCP ports 2375 and 2376 for Docker to known IP addresses