Audit AI use and administrator actions.
Keep evidence while reducing personal-data and cost risk.
Choose two appropriate practices.
Define log fields and retention by purpose and law, and protect access, integrity, encryption, and sensitive content.
Detailed explanation
Logs need not be kept forever without purpose.
Logs need not be kept forever without purpose.
Evidence and privacy can be managed together.
Evidence and privacy can be managed together.
Sensitive information could leak.
Sensitive information could leak.
Evidence may already be missing or changed.
Evidence may already be missing or changed.
Try it yourself
An example you can run in a temporary verification environment.
AWS公式CloudTrail・CloudWatch Logs・AIF-C01 Domain 5.2の監査と保持を確認する。Expected result
AIログの証拠性、最小化、保持、アクセス保護を説明できる。Key points
- Retention
- Integrity
- Masking
Notes
- Environment: AWS公式AIF-C01試験ガイドとAWS公式ドキュメントの確認
- Command output formatting can vary slightly by distribution or tool version.
- Run the example in a temporary directory or process when possible.
Foundation review
Read the scope first
Check whether the command acts on the current shell, a new process, an existing process, or a file.
Verify the observable result
Use the supplied command and compare the output with the expected result.