Home icon

Investigate your AWS account activity in plain language with Amazon Q

AWS Cloud Operations Blog



AWS CloudTrail now integrates with Amazon Q in the AWS Management Console, enabling users to investigate account activity using plain language instead of writing queries.

  • Amazon Q automatically selects data sources based on CloudTrail configuration (Event history, CloudWatch Logs, or S3)
  • Supports three question types: configuration/coverage, security investigations, and operational troubleshooting
  • Provides pattern analysis, root cause identification, and recommended fixes for issues like access-denied errors
  • Combines CloudTrail records with current configuration to assess security risks and attribute changes
  • Queries data events (e.g., S3 object access) when enabled and delivered to CloudWatch Logs
  • Available at no cost on Amazon Q Developer Free tier across all supported AWS Regions

Users can now investigate CloudTrail data through conversational prompts without requiring query language expertise, streamlining security auditing, compliance checks, and operational troubleshooting.



Go to article

The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.

Related articles

Sep 15
2026
Analyze your CloudTrail events using natural language in Amazon Q Console
Jul 11
2024
Chat about your AWS account resources with Amazon Q Developer
May 22
2025
Gain Compliance Insights in your AWS Environment Using Amazon Q Business
Jul 9
2025
Amazon Q chat in the AWS Management Console can now query AWS service data

The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.