AWS Public Sector Blog
What US federal agencies need to know about OMB memorandum M-26-14: Part 1
In this post, we discuss what changed in federal logging requirements from M-21-31 to M-26-14, and how agencies can prepare ahead of the forthcoming Cybersecurity and Infrastructure Security Agency (CISA) logging reference architecture (LRA).
Use Landing Zone Accelerator on AWS customizations to deploy Cloud Intelligence Dashboards
In this post, you will learn how to deploy Amazon Web Services (AWS) Cloud Intelligence Dashboards (CID) using the Landing Zone Accelerator on AWS (LZA) solution. In doing so, you will learn how to customize your LZA deployment using the customizations-config.yaml file. By utilizing the LZA and CID together, you can streamline the deployment process, ensure compliance with best practices, and gain valuable insights into your cloud environment, ultimately leading to improved operational efficiency, enhanced security, and better-informed decision-making.
What US federal customers need to know about memorandum M-21-31
The US Office of Management and Budget published M-21-31, a memorandum for federal government agencies to define event logging requirements related to cybersecurity incidents. These guidelines aim to support the detection, investigation, and remediation of cyber incidents on federal information systems. The memorandum defines various event logging (EL) tiers and the log data that must be captured for various log categories. Learn the services from AWS that have been called out explicitly in the memorandum for logging and retention requirements at the EL1 level, and the resources you can use to set up these services to capture the required log data.


