Technical controls ensure cloud activity logs are centralised, tamper-proof and available for investigation
Shipping cloud activity logs to a central store the logged users cannot alter delivers A.8.15's protected, centralized logging objective for cloud activity specifically, a slice of the servers, endpoints and network devices A.8.15 also covers.
Shipping cloud activity logs to a tamper-proof central store depends on synchronized timestamps to be useful for investigation, sharing A.8.17's underlying need without being the synchronization control itself.