Security Lake

eventNameDescriptionSampleRule
anyCatch-all entry for Security Lake rules that match the service but not a specific eventName.NN
CreateAwsLogSourceAdds a natively supported Amazon Web Services service as an Amazon Security Lake source. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateCustomLogSourceAdds a third-party custom source in Amazon Security Lake, from the Amazon Web Services Region where you want to create a custom source. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateDataLakeInitializes an Amazon Security Lake instance with the provided (or default) configuration. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateDataLakeExceptionSubscriptionCreates the specified notification subscription in Amazon Security Lake for the organization you specify. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateDataLakeOrganizationConfigurationAutomatically enables Amazon Security Lake for new member accounts in your organization. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateSubscriberCreates a subscriber for accounts that are already enabled in Amazon Security Lake. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateSubscriberNotificationNotifies the subscriber when new data is written to the data lake for the sources that the subscriber consumes in Security Lake. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteAwsLogSourceRemoves a natively supported Amazon Web Services service as an Amazon Security Lake source. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteCustomLogSourceRemoves a custom log source from Amazon Security Lake, to stop sending data from the custom source to Security Lake. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteDataLakeWhen you disable Amazon Security Lake from your account, Security Lake is disabled in all Amazon Web Services Regions and it stops collecting data from your sources. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteDataLakeExceptionSubscriptionDeletes the specified notification subscription in Amazon Security Lake for the organization you specify. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteDataLakeOrganizationConfigurationTurns off automatic enablement of Amazon Security Lake for member accounts that are added to an organization in Organizations. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteSubscriberDeletes the subscription permission and all notification settings for accounts that are already enabled in Amazon Security Lake. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteSubscriberNotificationDeletes the specified subscription notification in Amazon Security Lake for the organization you specify. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeregisterDataLakeDelegatedAdministratorDeletes the Amazon Security Lake delegated administrator account for the organization. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetDataLakeExceptionSubscriptionRetrieves the protocol and endpoint that were provided when subscribing to Amazon SNS topics for exception notifications. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetDataLakeOrganizationConfigurationRetrieves the configuration that will be automatically set up for accounts added to the organization after the organization has onboarded to Amazon Security Lake. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetDataLakeSourcesRetrieves a snapshot of the current Region, including whether Amazon Security Lake is enabled for those accounts and which sources Security Lake is collecting data from. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetSubscriberRetrieves the subscription information for the specified subscription ID. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListDataLakeExceptionsLists the Amazon Security Lake exceptions that you can use to find the source of problems and fix them. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListDataLakesRetrieves the Amazon Security Lake configuration object for the specified Amazon Web Services Regions. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListLogSourcesRetrieves the log sources. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListSubscribersLists all subscribers for the specific Amazon Security Lake account ID. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListTagsForResourceRetrieves the tags (keys and values) that are associated with an Amazon Security Lake resource: a subscriber, or the data lake configuration for your Amazon Web Services account in a particular Amazon Web Services Region. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
RegisterDataLakeDelegatedAdministratorDesignates the Amazon Security Lake delegated administrator account for the organization. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
TagResourceAdds or updates one or more tags that are associated with an Amazon Security Lake resource: a subscriber, or the data lake configuration for your Amazon Web Services account in a particular Amazon Web Services Region. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UntagResourceRemoves one or more tags (keys and values) from an Amazon Security Lake resource: a subscriber, or the data lake configuration for your Amazon Web Services account in a particular Amazon Web Services Region. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateDataLakeYou can use UpdateDataLake to specify where to store your security data, how it should be encrypted at rest and for how long. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateDataLakeExceptionSubscriptionUpdates the specified notification subscription in Amazon Security Lake for the organization you specify. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateSubscriberUpdates an existing subscription for the given Amazon Security Lake account ID. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateSubscriberNotificationUpdates an existing notification method for the subscription (SQS or HTTPs endpoint) or switches the notification subscription endpoint for a subscriber. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN

any: Security Lake (catch-all)

#
Service
securitylake

Description

Catch-all entry for Security Lake rules that match the service but not a specific eventName.

CreateAwsLogSource

#
Service
securitylake

Description

Adds a natively supported Amazon Web Services service as an Amazon Security Lake source. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateCustomLogSource

#
Service
securitylake

Description

Adds a third-party custom source in Amazon Security Lake, from the Amazon Web Services Region where you want to create a custom source. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateDataLake

#
Service
securitylake

Description

Initializes an Amazon Security Lake instance with the provided (or default) configuration. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateDataLakeExceptionSubscription

#
Service
securitylake

Description

Creates the specified notification subscription in Amazon Security Lake for the organization you specify. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateDataLakeOrganizationConfiguration

#
Service
securitylake

Description

Automatically enables Amazon Security Lake for new member accounts in your organization. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateSubscriber

#
Service
securitylake

Description

Creates a subscriber for accounts that are already enabled in Amazon Security Lake. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateSubscriberNotification

#
Service
securitylake

Description

Notifies the subscriber when new data is written to the data lake for the sources that the subscriber consumes in Security Lake. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteAwsLogSource

#
Service
securitylake

Description

Removes a natively supported Amazon Web Services service as an Amazon Security Lake source. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteCustomLogSource

#
Service
securitylake

Description

Removes a custom log source from Amazon Security Lake, to stop sending data from the custom source to Security Lake. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteDataLake

#
Service
securitylake

Description

When you disable Amazon Security Lake from your account, Security Lake is disabled in all Amazon Web Services Regions and it stops collecting data from your sources. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteDataLakeExceptionSubscription

#
Service
securitylake

Description

Deletes the specified notification subscription in Amazon Security Lake for the organization you specify. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteDataLakeOrganizationConfiguration

#
Service
securitylake

Description

Turns off automatic enablement of Amazon Security Lake for member accounts that are added to an organization in Organizations. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteSubscriber

#
Service
securitylake

Description

Deletes the subscription permission and all notification settings for accounts that are already enabled in Amazon Security Lake. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteSubscriberNotification

#
Service
securitylake

Description

Deletes the specified subscription notification in Amazon Security Lake for the organization you specify. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeregisterDataLakeDelegatedAdministrator

#
Service
securitylake

Description

Deletes the Amazon Security Lake delegated administrator account for the organization. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetDataLakeExceptionSubscription

#
Service
securitylake

Description

Retrieves the protocol and endpoint that were provided when subscribing to Amazon SNS topics for exception notifications. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetDataLakeOrganizationConfiguration

#
Service
securitylake

Description

Retrieves the configuration that will be automatically set up for accounts added to the organization after the organization has onboarded to Amazon Security Lake. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetDataLakeSources

#
Service
securitylake

Description

Retrieves a snapshot of the current Region, including whether Amazon Security Lake is enabled for those accounts and which sources Security Lake is collecting data from. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetSubscriber

#
Service
securitylake

Description

Retrieves the subscription information for the specified subscription ID. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListDataLakeExceptions

#
Service
securitylake

Description

Lists the Amazon Security Lake exceptions that you can use to find the source of problems and fix them. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListDataLakes

#
Service
securitylake

Description

Retrieves the Amazon Security Lake configuration object for the specified Amazon Web Services Regions. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListLogSources

#
Service
securitylake

Description

Retrieves the log sources. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListSubscribers

#
Service
securitylake

Description

Lists all subscribers for the specific Amazon Security Lake account ID. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListTagsForResource

#
Service
securitylake

Description

Retrieves the tags (keys and values) that are associated with an Amazon Security Lake resource: a subscriber, or the data lake configuration for your Amazon Web Services account in a particular Amazon Web Services Region. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

RegisterDataLakeDelegatedAdministrator

#
Service
securitylake

Description

Designates the Amazon Security Lake delegated administrator account for the organization. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

TagResource

#
Service
securitylake

Description

Adds or updates one or more tags that are associated with an Amazon Security Lake resource: a subscriber, or the data lake configuration for your Amazon Web Services account in a particular Amazon Web Services Region. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UntagResource

#
Service
securitylake

Description

Removes one or more tags (keys and values) from an Amazon Security Lake resource: a subscriber, or the data lake configuration for your Amazon Web Services account in a particular Amazon Web Services Region. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateDataLake

#
Service
securitylake

Description

You can use UpdateDataLake to specify where to store your security data, how it should be encrypted at rest and for how long. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateDataLakeExceptionSubscription

#
Service
securitylake

Description

Updates the specified notification subscription in Amazon Security Lake for the organization you specify. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateSubscriber

#
Service
securitylake

Description

Updates an existing subscription for the given Amazon Security Lake account ID. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateSubscriberNotification

#
Service
securitylake

Description

Updates an existing notification method for the subscription (SQS or HTTPs endpoint) or switches the notification subscription endpoint for a subscriber. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.