Home icon

AWS KMS CloudWatch metrics help you better track and understand how your KMS keys are being used

Security Blog



AWS KMS introduces key-level filtering for AWS KMS API usage in Amazon CloudWatch metrics, providing enhanced visibility for tracking and understanding key usage.

  • New CloudWatch metrics enable tracking API usage for specific KMS keys
  • Users can now view API usage filtered by individual operations like Encrypt, Decrypt, and GenerateDataKey
  • Helps identify KMS keys consuming the most API usage quota or contributing to API charges
  • Allows setting up detailed alarms for anomalous KMS API usage patterns
  • Provides a more streamlined approach to monitoring key usage without building custom solutions

The new feature helps customers improve operational efficiency, manage security risks, and track detailed key usage for compliance purposes.



Go to article

The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.

Related articles

Apr 28
2026
AWS KMS now tracks last usage of all KMS keys
Jan 23
2026
Monitoring Amazon EFS KPIs using AWS CloudWatch metrics
Jun 2
2026
Identify unused AWS KMS keys and prevent accidental key deletions
Nov 21
2024
Announcing new Amazon CloudWatch Metrics for AWS Lambda Event Source Mappings (ESMs)

The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.