CloudTrail Insights

  • Leverage CloudTrail to automatically detect unusual activity in your account
    • inaccurate resource provisioning
    • hitting service limits
    • Burst of IAM actions
    • Gaps in periodic maintenance activity
  • Analyse normal management events to create a base line
  • And continuously analyse write event to detect unusual partterns
    • These can be send to
      • CloudTrail console
      • S3 Bucket
      • EventBridge Event

Pasted image 20221005172429.png