...
Remediation Steps:
Perform following to disable public access to cloud trail bucket configure CloudWatch log retention period :
Login to the AWS Management Console at https://console.aws.amazon.com
Go to CloudWatch in services
In left navigation panel under Logs, select Log groups .
Select the Log group that need to reconfigure.
Select Actions dropdown.
Select the Edit retention setting, select retention days from the dropdown.
Click on Save.
...