Audit Manager

AWS Audit Manager — continuously collects evidence to streamline compliance audits.

AWS Audit Manager continuously collects evidence from services like CloudTrail, AWS Config, and Security Hub, mapping it to controls within prebuilt frameworks such as SOC 2, HIPAA, GDPR, and NIST. This matters for AIF-C01 because AI workloads on Amazon Bedrock or SageMaker must meet data-governance requirements, and Audit Manager supplies the audit trail proving those controls are in place. The key exam distinction is purpose: it gathers ongoing compliance evidence, not real-time threats. Don’t confuse it with Security Hub (aggregates findings) or AWS Config (checks configuration rules); Audit Manager consumes their outputs to build audit-ready reports.

PlayPrepHQ study notes are written and reviewed against primary exam sources. How we create & review content →

Related terms

Back to Security, Compliance, and Governance for AI Solutions