Overview
You should enable Cloud Audit Logging for all services to track all Admin activities, read access, and write access to user data.
Remediation
Go to https://console.cloud.google.com/iam-admin/audit/allservices and under "LOG TYPE" select "Admin read", "Data read", and "Data write", and then click "SAVE". M
Make sure there are no exempted users configured.