Creating an Identity and Access (IAM) User in the AWS Management Console When Using the Amazon Web Services
An Amazon administrator must create a user and then apply the CloudWatchLogsReadOnlyAccess policy in the AWS Management Console. The JSA user can then create a log source in JSA.
Create a user.
Log in to the AWS Management Console as an administrator.
Create an Amazon AWS IAM user and then apply the CloudWatchLogsReadOnlyAccess policy.