CloudSOC scope / supported activities for Amazon Workspaces
Evaluate monitoring users activities for data in motion activity on the virtual desktop (vdi) or monitoring any related logging for AWS Workspaces utilization by the user from the AWS Securlet.
CloudSOC, DLP, AWS Securlet, and data in motion from Windows VDI on Amazon Workspaces
Data at Rest:
AWS Securlet does not log any user activity for AWS Workspaces vdi (tested with Windows vdi), such as startup or shutdown, login, logout of the machine.
Gateway / Data in Motion:
Just like a virtual Windows desktop, traffic steering to CloudSOC is supported such as via WSS Agent from the user's vdi on AWS Workspaces.
Below are only a couple of examples to illustrate AWS Workspaces vdi can leverage CloudSOC Gatelets as a desktop or vdi.
Example of email blocked due to Policy restricting content