Control: 3.3 Ensure that events are collected and processed to identify anomalies or abnormal events
Description
Events that you collect and centralize in the IBM Cloud Activity Tracker with LogDNA service provide information about actions that take place on your account. You can analyze this data to resolve problems, identify anomalies, and be notified of abnormal situations.
Remediation
IBM Cloud Activity Tracker with LogDNA does not include default templates for views or alerts. You can define your own views, alerts, and notification channels. Default notification channels are configured by using presets.
Usage
Run the control in your terminal:
powerpipe control run ibm_compliance.control.cis_v100_3_3
Snapshot and share results via Turbot Pipes:
powerpipe loginpowerpipe control run ibm_compliance.control.cis_v100_3_3 --share
SQL
This control uses a named query:
manual_control