AU-06 Audit Monitoring, Analysis, And Reporting

Audit and Accountability

Low Moderate High

Description

The organization regularly reviews/analyzes information system audit records for indications of inappropriate or unusual activity, investigates suspicious activity or suspected violations, reports findings to appropriate officials, and takes necessary actions.\n

Supplemental Guidance

Organizations increase the level of audit monitoring and analysis activity within the information system whenever there is an indication of increased risk to organizational operations, organizational assets, or individuals based on law enforcement information, intelligence information, or other credible sources of information.\n

Changes from Rev 4

Adds control text regarding inclusion of the potential impact of the inappropriate or unusual activity when reviewing audit records as well as adjusting level or focus of review based on threat or other information Incorporates withdrawn control AU-6(10)

Enhancements

\n

Compliance Mappings

ISO 27002:2022

8.15

COBIT 2019

DSS06.05

CIS Controls v8

13.13.148.18.128.28.38.48.58.68.78.88.9

NIST CSF 2.0

DE.AE-03DE.AE-06

SOC 2 TSC

CC7.2CC7.2-POF1CC7.3

ISO 17799 (legacy)

10.10.210.10.413.2.1

COBIT 4.1 (legacy)

DS5.5