Logging and monitoring

CloudWatch alarms not monitoring console log-in without MFA

Platform(s)
Compliance Frameworks

Brazilian General Data Protection (LGPD), CCM-CSA, CCPA, cis_8, CPRA, Data Security Posture Management (DSPM) Best Practices, essential_8_au, essential_8_au_level_1, essential_8_au_level_2, GDPR, hdh, HITRUST, iso_27001_2022, iso_27002_2022, Mitre ATT&CK, New Zealand Information Security Manual, NIST 800-171, NIST 800-53, Orca Best Practices, PDPA, pipeda, UK Cyber Essentials

Description

AWS CloudWatch alarms feature allows to watch metrics and receive notifications when metrics fall outside the settings you configured. We identified that the cloud account ""{CloudAccount}"" is not configured with CloudWatch metrics to monitor console log-in without multi factor authentication.