More Info:

Your CloudTrail logs should be encrypted at rest using server-side encryption provided by AWS KMS–Managed Keys (SSE-KMS) to enhance the security of your CloudTrail bucket

Risk Level

Medium

Address

Security

Compliance Standards

HIPAA, PCIDSS, GDPR, CISAWS, CBP, NIST, SOC2, AWSWAF

Triage and Remediation

Remediation

Using Console

Additional Reading: