Amazon EMR and AWS Glue now provide comprehensive audit context support for AWS Lake Formation credential vending APIs and AWS Glue Data Catalog GetTable and GetTables API calls. This auditing capability helps you maintain compliance with regulatory frameworks, including the Digital Markets Act (DMA) and data protection regulations. The feature is enabled by default, offering seamless integration into existing workflows while strengthening security and compliance monitoring across your data lake infrastructure.
You can view this audit context information in AWS CloudTrail logs, enabling enhanced security auditing, regulatory compliance, and improved troubleshooting for EMR for Apache Spark native fine-grained access control (FGAC) and full table access jobs. The audit logging feature automatically records the platform type (EMR-EC2, EMR on EKS, EMR Serverless, or AWS Glue) and its corresponding identifiers like such as Cluster ID, Step ID, Job Run ID, and Virtual Cluster ID. This enables security teams to track and correlate API calls from individual Spark jobs, streamline compliance reporting, and analyze historical data access patterns. Additionally, data engineers can quickly troubleshoot access-related issues by connecting them to specific job executions, resolve FGAC permission challenges, and monitor access patterns across different compute platforms.
This feature is available in all AWS Regions that support Amazon EMR, AWS Glue, and AWS Lake Formation, requiring EMR version 7.12+ or AWS Glue version 5.1+.
Categories: marketing:marchitecture/analytics,general:products/amazon-emr,marketing:marchitecture/management-tools,general:products/aws-glue
Source: Amazon Web Services
Latest Posts
- (Updated) Upcoming change: disabling Teams meeting recording expiration notification emails [MC1245635]
![(Updated) Upcoming change: disabling Teams meeting recording expiration notification emails [MC1245635] 2 pexels alfonso escalante 1319242 2533092](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
- Endpoint Data Loss Prevention: Always-on diagnostics for Windows endpoints (Phase 2) [MC1246003]
![Endpoint Data Loss Prevention: Always-on diagnostics for Windows endpoints (Phase 2) [MC1246003] 3 pexels icesky08 1294229](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
- Always-on diagnostics for Endpoint DLP – Turned on by default [MC1246001]
![Always-on diagnostics for Endpoint DLP – Turned on by default [MC1246001] 4 pexels designecologist 2526105](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
- Microsoft Outlook: Copilot Chat available in shared and delegate mailboxes [MC1246031]
![Microsoft Outlook: Copilot Chat available in shared and delegate mailboxes [MC1246031] 5 pexels diego madrigal 162471 539694](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)

![(Updated) Upcoming change: disabling Teams meeting recording expiration notification emails [MC1245635] 2 pexels alfonso escalante 1319242 2533092](https://mwpro.co.uk/wp-content/uploads/2025/06/pexels-alfonso-escalante-1319242-2533092-150x150.webp)
![Endpoint Data Loss Prevention: Always-on diagnostics for Windows endpoints (Phase 2) [MC1246003] 3 pexels icesky08 1294229](https://mwpro.co.uk/wp-content/uploads/2025/06/pexels-icesky08-1294229-150x150.webp)
![Always-on diagnostics for Endpoint DLP – Turned on by default [MC1246001] 4 pexels designecologist 2526105](https://mwpro.co.uk/wp-content/uploads/2024/08/pexels-designecologist-2526105-150x150.webp)
![Microsoft Outlook: Copilot Chat available in shared and delegate mailboxes [MC1246031] 5 pexels diego madrigal 162471 539694](https://mwpro.co.uk/wp-content/uploads/2025/06/pexels-diego-madrigal-162471-539694-150x150.webp)
