logo

A Primer on Cloud Logging for Incident Response

ID: 799ff310-e7e8-5dcd-aed2-9c30810a794f

STIX ID: report--799ff310-e7e8-5dcd-aed2-9c30810a794f

Feed Name: TrustedSec blog

Date Published: 2025-03-19

Date Updated: 2026-05-01

...
...

This blog post provides an overview of common Azure and AWS log sources and collection options, contrasts host-based and identity/resource-based cloud incidents, details Azure log categories and collection methods, and explains AWS services such as CloudTrail, Flow Logs, DNS logs, S3 access logs and analysis tools like Athena, GuardDuty, and Detective to support cloud investigations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.