AWS Audit Manager

eventNameDescriptionSampleRule
anyCatch-all entry for AWS Audit Manager rules that match the service but not a specific eventName.NN
AssociateAssessmentReportEvidenceFolderAssociates an evidence folder to an assessment report in an Audit Manager assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
BatchAssociateAssessmentReportEvidenceAssociates a list of evidence to an assessment report in an Audit Manager assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
BatchCreateDelegationByAssessmentCreates a batch of delegations for an assessment in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
BatchDeleteDelegationByAssessmentDeletes a batch of delegations for an assessment in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
BatchDisassociateAssessmentReportEvidenceDisassociates a list of evidence from an assessment report in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
BatchImportEvidenceToAssessmentControlAdds one or more pieces of evidence to a control in an Audit Manager assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateAssessmentCreates an assessment in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateAssessmentFrameworkCreates a custom framework in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateAssessmentReportCreates an assessment report for the specified assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateControlCreates a new custom control in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteAssessmentDeletes an assessment in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteAssessmentFrameworkDeletes a custom framework in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteAssessmentFrameworkShareDeletes a share request for a custom framework in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteAssessmentReportDeletes an assessment report in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteControlDeletes a custom control in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeregisterAccountDeregisters an account in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeregisterOrganizationAdminAccountRemoves the specified Amazon Web Services account as a delegated administrator for Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DisassociateAssessmentReportEvidenceFolderDisassociates an evidence folder from the specified assessment report in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetAccountStatusGets the registration status of an account in Audit Manager. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetAssessmentGets information about a specified assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetAssessmentFrameworkGets information about a specified framework. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetAssessmentReportUrlGets the URL of an assessment report in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetChangeLogsGets a list of changelogs from Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetControlGets information about a specified control. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetDelegationsGets a list of delegations from an audit owner to a delegate. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetEvidenceGets information about a specified evidence item. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetEvidenceByEvidenceFolderGets all evidence from a specified evidence folder in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetEvidenceFileUploadUrlCreates a presigned Amazon S3 URL that can be used to upload a file as manual evidence. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetEvidenceFolderGets an evidence folder from a specified assessment in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetEvidenceFoldersByAssessmentGets the evidence folders from a specified assessment in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetEvidenceFoldersByAssessmentControlGets a list of evidence folders that are associated with a specified control in an Audit Manager assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetInsightsGets the latest analytics data for all your current active assessments. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetInsightsByAssessmentGets the latest analytics data for a specific active assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetOrganizationAdminAccountGets the name of the delegated Amazon Web Services administrator account for a specified organization. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetServicesInScopeGets a list of the Amazon Web Services services from which Audit Manager can collect evidence. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetSettingsGets the settings for a specified Amazon Web Services account. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListAssessmentControlInsightsByControlDomainLists the latest analytics data for controls within a specific control domain and a specific active assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListAssessmentFrameworksReturns a list of the frameworks that are available in the Audit Manager framework library. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListAssessmentFrameworkShareRequestsReturns a list of sent or received share requests for custom frameworks in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListAssessmentReportsReturns a list of assessment reports created in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListAssessmentsReturns a list of current and past assessments from Audit Manager. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
ListControlDomainInsightsLists the latest analytics data for control domains across all of your active assessments. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListControlDomainInsightsByAssessmentLists analytics data for control domains within a specified active assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListControlInsightsByControlDomainLists the latest analytics data for controls within a specific control domain across all active assessments. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListControlsReturns a list of controls from Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListKeywordsForDataSourceReturns a list of keywords that are pre-mapped to the specified control data source. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListNotificationsReturns a list of all Audit Manager notifications. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListTagsForResourceReturns a list of tags for the specified resource in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
RegisterAccountEnables Audit Manager for the specified Amazon Web Services account. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
RegisterOrganizationAdminAccountEnables an Amazon Web Services account within the organization as the delegated administrator for Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
StartAssessmentFrameworkShareCreates a share request for a custom framework in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
TagResourceTags the specified resource in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UntagResourceRemoves a tag from a resource in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateAssessmentEdits an Audit Manager assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateAssessmentControlUpdates a control within an assessment in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateAssessmentControlSetStatusUpdates the status of a control set in an Audit Manager assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateAssessmentFrameworkUpdates a custom framework in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateAssessmentFrameworkShareUpdates a share request for a custom framework in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateAssessmentStatusUpdates the status of an assessment in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateControlUpdates a custom control in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateSettingsUpdates Audit Manager settings for the current account. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ValidateAssessmentReportIntegrityValidates the integrity of an assessment report in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN

any: AWS Audit Manager (catch-all)

#
Service
auditmanager

Description

Catch-all entry for AWS Audit Manager rules that match the service but not a specific eventName.

AssociateAssessmentReportEvidenceFolder

#
Service
auditmanager

Description

Associates an evidence folder to an assessment report in an Audit Manager assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

BatchAssociateAssessmentReportEvidence

#
Service
auditmanager

Description

Associates a list of evidence to an assessment report in an Audit Manager assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

BatchCreateDelegationByAssessment

#
Service
auditmanager

Description

Creates a batch of delegations for an assessment in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

BatchDeleteDelegationByAssessment

#
Service
auditmanager

Description

Deletes a batch of delegations for an assessment in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

BatchDisassociateAssessmentReportEvidence

#
Service
auditmanager

Description

Disassociates a list of evidence from an assessment report in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

BatchImportEvidenceToAssessmentControl

#
Service
auditmanager

Description

Adds one or more pieces of evidence to a control in an Audit Manager assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateAssessment

#
Service
auditmanager

Description

Creates an assessment in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateAssessmentFramework

#
Service
auditmanager

Description

Creates a custom framework in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateAssessmentReport

#
Service
auditmanager

Description

Creates an assessment report for the specified assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateControl

#
Service
auditmanager

Description

Creates a new custom control in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteAssessment

#
Service
auditmanager

Description

Deletes an assessment in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteAssessmentFramework

#
Service
auditmanager

Description

Deletes a custom framework in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteAssessmentFrameworkShare

#
Service
auditmanager

Description

Deletes a share request for a custom framework in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteAssessmentReport

#
Service
auditmanager

Description

Deletes an assessment report in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteControl

#
Service
auditmanager

Description

Deletes a custom control in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeregisterAccount

#
Service
auditmanager

Description

Deregisters an account in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeregisterOrganizationAdminAccount

#
Service
auditmanager

Description

Removes the specified Amazon Web Services account as a delegated administrator for Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DisassociateAssessmentReportEvidenceFolder

#
Service
auditmanager

Description

Disassociates an evidence folder from the specified assessment report in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetAccountStatus

#
Service
auditmanager

Description

Gets the registration status of an account in Audit Manager. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "6109ce71-b07d-4f4c-8311-b9d0b77ff50d",
  "eventSource": "auditmanager.amazonaws.com",
  "eventName": "GetAccountStatus",
  "awsRegion": "ap-south-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "9f979235-a29e-44cb-9d8a-a3697a7bcbaa",
  "userAgent": "aws-sdk-go-v2/1.43.0 ua/2.1 os/linux lang/go#1.26.5 md/GOOS#linux md/GOARCH#arm64 api/auditmanager#1.46.8 m/E"
}

GetAssessment

#
Service
auditmanager

Description

Gets information about a specified assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetAssessmentFramework

#
Service
auditmanager

Description

Gets information about a specified framework. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetAssessmentReportUrl

#
Service
auditmanager

Description

Gets the URL of an assessment report in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetChangeLogs

#
Service
auditmanager

Description

Gets a list of changelogs from Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetControl

#
Service
auditmanager

Description

Gets information about a specified control. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetDelegations

#
Service
auditmanager

Description

Gets a list of delegations from an audit owner to a delegate. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetEvidence

#
Service
auditmanager

Description

Gets information about a specified evidence item. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetEvidenceByEvidenceFolder

#
Service
auditmanager

Description

Gets all evidence from a specified evidence folder in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetEvidenceFileUploadUrl

#
Service
auditmanager

Description

Creates a presigned Amazon S3 URL that can be used to upload a file as manual evidence. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetEvidenceFolder

#
Service
auditmanager

Description

Gets an evidence folder from a specified assessment in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetEvidenceFoldersByAssessment

#
Service
auditmanager

Description

Gets the evidence folders from a specified assessment in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetEvidenceFoldersByAssessmentControl

#
Service
auditmanager

Description

Gets a list of evidence folders that are associated with a specified control in an Audit Manager assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetInsights

#
Service
auditmanager

Description

Gets the latest analytics data for all your current active assessments. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetInsightsByAssessment

#
Service
auditmanager

Description

Gets the latest analytics data for a specific active assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetOrganizationAdminAccount

#
Service
auditmanager

Description

Gets the name of the delegated Amazon Web Services administrator account for a specified organization. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetServicesInScope

#
Service
auditmanager

Description

Gets a list of the Amazon Web Services services from which Audit Manager can collect evidence. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetSettings

#
Service
auditmanager

Description

Gets the settings for a specified Amazon Web Services account. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListAssessmentControlInsightsByControlDomain

#
Service
auditmanager

Description

Lists the latest analytics data for controls within a specific control domain and a specific active assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListAssessmentFrameworks

#
Service
auditmanager

Description

Returns a list of the frameworks that are available in the Audit Manager framework library. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListAssessmentFrameworkShareRequests

#
Service
auditmanager

Description

Returns a list of sent or received share requests for custom frameworks in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListAssessmentReports

#
Service
auditmanager

Description

Returns a list of assessment reports created in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListAssessments

#
Service
auditmanager

Description

Returns a list of current and past assessments from Audit Manager. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "3c7f7278-f271-4c0a-bad5-5174ccf863fa",
  "eventSource": "auditmanager.amazonaws.com",
  "eventName": "ListAssessments",
  "awsRegion": "eu-central-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "f3238128-45a2-4b05-bcb0-06beb4f7aa7d",
  "userAgent": "aws-sdk-go-v2/1.43.0 ua/2.1 os/linux lang/go#1.26.5 md/GOOS#linux md/GOARCH#arm64 api/auditmanager#1.46.8 m/C,E",
  "errorCode": "AccessDenied"
}

ListControlDomainInsights

#
Service
auditmanager

Description

Lists the latest analytics data for control domains across all of your active assessments. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListControlDomainInsightsByAssessment

#
Service
auditmanager

Description

Lists analytics data for control domains within a specified active assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListControlInsightsByControlDomain

#
Service
auditmanager

Description

Lists the latest analytics data for controls within a specific control domain across all active assessments. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListControls

#
Service
auditmanager

Description

Returns a list of controls from Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListKeywordsForDataSource

#
Service
auditmanager

Description

Returns a list of keywords that are pre-mapped to the specified control data source. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListNotifications

#
Service
auditmanager

Description

Returns a list of all Audit Manager notifications. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListTagsForResource

#
Service
auditmanager

Description

Returns a list of tags for the specified resource in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

RegisterAccount

#
Service
auditmanager

Description

Enables Audit Manager for the specified Amazon Web Services account. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

RegisterOrganizationAdminAccount

#
Service
auditmanager

Description

Enables an Amazon Web Services account within the organization as the delegated administrator for Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

StartAssessmentFrameworkShare

#
Service
auditmanager

Description

Creates a share request for a custom framework in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

TagResource

#
Service
auditmanager

Description

Tags the specified resource in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UntagResource

#
Service
auditmanager

Description

Removes a tag from a resource in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateAssessment

#
Service
auditmanager

Description

Edits an Audit Manager assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateAssessmentControl

#
Service
auditmanager

Description

Updates a control within an assessment in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateAssessmentControlSetStatus

#
Service
auditmanager

Description

Updates the status of a control set in an Audit Manager assessment. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateAssessmentFramework

#
Service
auditmanager

Description

Updates a custom framework in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateAssessmentFrameworkShare

#
Service
auditmanager

Description

Updates a share request for a custom framework in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateAssessmentStatus

#
Service
auditmanager

Description

Updates the status of an assessment in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateControl

#
Service
auditmanager

Description

Updates a custom control in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateSettings

#
Service
auditmanager

Description

Updates Audit Manager settings for the current account. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ValidateAssessmentReportIntegrity

#
Service
auditmanager

Description

Validates the integrity of an assessment report in Audit Manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.