You can audit all actions in which the keycustodian_role is active.
sp_audit "all", "keycustodian_role", "all", "on"