Linivo can pull CloudWatch metrics through a read-only IAM role, so EC2, RDS and load-balancer health sit in the same timeline as your on-prem devices.
Create a role with the CloudWatchReadOnlyAccess managed policy (or a narrower custom policy scoped to just the namespaces you need), and generate an access key or configure it for role assumption if Linivo Cloud connects directly.
Pulling every CloudWatch namespace by default gets noisy fast. Start with EC2, RDS and ELB/ALB, the ones with the clearest operational signal, and add others deliberately rather than ingesting everything at once.
Once connected, discovered resources appear as devices the same way an on-prem host would, and their CloudWatch alarms can feed into the same correlated-incident timeline as your network detections.