Ensure CloudTrail is Logging Management Events

AWS CloudTrail is a service that enables governance, compliance, operational auditing, and risk auditing of your AWS account. With CloudTrail, you can log, continuously monitor, and retain account activity related to actions across your AWS infrastructure. CloudTrail provides event history of your AWS account activity, including actions taken through the AWS Management Console, AWS SDKs, command line tools, and other AWS services. Since this holds all audit logs, it is important to have a log of all changes that have happened in your AWS account. This is why CloudTrail logging management events is a security best practice. Having a full inventory of your CloudTrails with current logging status across all of your accounts can help with NIST, GDPR & PCI-DSS compliance.

Audit & Remediation

 

 

  • Select your CloudTrail. Scroll down to Management Events and validate that API activity has All or Write-only selected.

 

 

  • Select the Edit button
  • Under Events select the Management events check box in order to turn this on. Under Management events --> API activity choose Read and Write. Alternatively you can choose just the Write option if you only want to track changes with-in your account.

 

 

  • Continue this process for all of your AWS accounts to ensure you are compliant.
See all certificates in a single place!

Do you want to see all of your ACM certificates in once place for all regions and all accounts?
Login to our online demo to see exactly what this looks like.
demo.intelligentdiscovery.io

 

Other Key Features

Inventory

Consolidate your inventory management with consistent and frequent security logs, inventories, and change logs. Dashboard reporting for extensive analytical value.

learn more +

Cost & Usage

Access consolidated capacity, cost, and volume tools in a scaling environment without impacting production or breaking the bank.

learn more +