Amazon S3
Connect Amazon S3 to Iru Endpoint to export unified activity logs, and to Iru Compliance Automation to collect bucket configuration and access-control evidence.
Iru Endpoint
Activity from Endpoint, Detections, Vulnerabilities, and Compliance appears in one feed, exported to a self-hosted Amazon S3 bucket for centralized collection and analysis with your SIEM.
The Amazon S3 Activity Log integration in Iru Endpoint delivers the same tenant activity events you review in Unified Activity, giving you one exportable feed.
Iru Compliance Automation
No S3 bucket should be quietly exposed to the public internet. Iru connects to AWS S3 and reads bucket policies, encryption settings, and access logs directly, so that stays true automatically as things change.
Key Capabilities
- Confirm data at rest is encrypted
- Verify no bucket is publicly exposed
- Track object access as it's logged
- Check that lifecycle and replication match your retention policy
Evidence Collected
- Bucket inventory with encryption settings
- Public access block and bucket policy posture
- Lifecycle and replication configuration
- S3 server access logging and CloudTrail events