Home icon

Exporting a subset of AWS CloudTrail Lake events to Amazon S3

AWS Cloud Operations Blog



The article discusses a method for exporting a subset of AWS CloudTrail Lake events to Amazon S3 using AWS services like EventBridge, Lambda, and Athena.

  • Solution allows filtering and exporting specific CloudTrail events for focused analysis
  • Uses a CloudFormation template to deploy the solution with automated scheduling
  • Key components include EventBridge Rule, Lambda Function, Athena Database, and S3 Bucket
  • Enables precise monitoring of specific API calls and activities across AWS infrastructure
  • Provides sample SQL queries for filtering events like DynamoDB actions or MFA device changes

The solution helps security professionals and DevOps engineers gain deeper visibility into AWS operations by simplifying log analysis and event tracking.



Go to article

The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.

Related articles

May 29
2025
CloudTrail Lake now supports event enrichment and expanded event size
Jun 3
2025
New: AWS CloudTrail Lake Event Enrichment: Add Business Context to AWS Activity Logs
Jun 11
2025
AWS CloudTrail enhances logging for Amazon S3 DeleteObjects API
Dec 30
2025
AWS launches simplified import of CloudTrail Lake data in Amazon CloudWatch

The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.