A Primer on Cloud Logging for Incident Response
ID: 799ff310-e7e8-5dcd-aed2-9c30810a794f
STIX ID: report--799ff310-e7e8-5dcd-aed2-9c30810a794f
Feed Name: TrustedSec blog
This blog post provides an overview of common Azure and AWS log sources and collection options, contrasts host-based and identity/resource-based cloud incidents, details Azure log categories and collection methods, and explains AWS services such as CloudTrail, Flow Logs, DNS logs, S3 access logs and analysis tools like Athena, GuardDuty, and Detective to support cloud investigations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
