a

AWS DevOps Activity and API Usage Tracking

aws control tower diagram example

AllCode has developed mature methodologies and practices for tracking and monitoring applications and APIs. We deploy AWS CloudTrail in every AWS account we manage via Landing Zone or Control Tower to monitor API activity for multi-tenant services. All logs are stored in a central AWS account, where they can be analyzed using Amazon QuickSight. Additionally, CloudTrail logs are replicated into a CloudWatch log group, and all activities are integrated with GuardDuty and Amazon Inspector.

Findings are pushed to our centralized event management tool, allowing for notifications and escalation notices to customer stakeholder teams. Please refer to the attached details and snapshots of CloudTrail events and API requests related to two customer examples.