AWS CloudTrail tracks the who, what, where, where and when of activity that occurs in your AWS environment and records this activity in the form of audit logs. Engineering teams that build, scale, and manage cloud-based applications on AWS know that at some point in time, their applications and infrastructure will be under attack. In this post, I'll show what I did to achieve a better level of security in the way I store, process, and analyze audit logs in AWS.