More Info:

Your trails should have file integrity validation feature enabled in order to check the log files and detect whether these were modified or deleted after CloudTrail agent delivered them to the S3 bucket.

Risk Level

Medium

Address

Security

Compliance Standards

HIPAA, CISAWS, CBP, SOC2, NIST, GDPR

Triage and Remediation

Remediation

Using Console

Additional Reading: