Creating an Identity and Access (IAM) user in the AWS Management Console
An Amazon administrator must create a user and then apply the
CloudWatchLogsReadOnlyAccess policy in the AWS Management Console. The QRadar® product user can then create a data source in the QRadar product.
Procedure
- Log in to the AWS Management Console as an administrator.
- Create an Amazon AWS IAM user and then apply the CloudWatchLogsReadOnlyAccess policy.
What to do next
Configure the data source in the QRadar product.
For more information about adding a data source in the QRadar product, see Adding a data source.