During a PCI DSS compliance audit, an Auditor highlights gaps where shared credentials are used and some privileged actions are not logged. What must you do to ensure that administrative access is restricted and actions are auditable?
During an internal audit, the Compliance team asks for a record of all API calls and user activities in Oracle Database@AWS. Which AWS service must you enable to provide this information?
During a PCI DSS compliance audit, an Auditor highlights gaps where shared credentials are used and some privileged actions are not logged. What must you do to ensure that administrative access is restricted and actions are auditable?