Logging and monitoring

Ensure CloudTrail is enabled in all regions

Description

AWS CloudTrail is a service that enables governance, compliance, operational auditing, and risk auditing of your AWS account. Visibility into your AWS account activity is a key aspect of security and operational best practices. Enabling logging with CloudTrail allows you to identify what actions were performed in your account, by who, and on which assets - enabling quicker discovery and response to anomalous activity or events in your account. We identified that for the CloudAccount there isn't CloudTrail which enabled logging in all regions, Management Events, and logging all types of events (read and write).
  • Recommended Mitigation

    It is recommended to enable logging in all regions, for Management Events, and all access levels (read and write) in at least one CloudTrail trail.