CodeBuild Project Environment Does Not Have Logging Configured
Overview
This check examines if a CodeBuild project environment includes a minimum of one activated logging option, such as S3 or CloudWatch logs. The check results in failure if the CodeBuild project environment lacks any enabled log options.
Considering security aspects, enabling logging is a crucial practice for facilitating future forensic investigations in the event of security incidents. The correlation of irregularities in CodeBuild projects with threat detections enhances confidence in the precision of these threat detections.
Vendor
AWS
Cloud Service
CodeBuild
Related Controls
CodeBuild.4
Severity
3
Item Types
AWS::CodeBuild::Project