💼 8 For accountability purposes, a regulated entity would typically ensure that users and information assets are uniquely identified and their actions are logged at a sufficient level of granularity to support information security monitoring processes.
- Contextual name: 💼 8 For accountability purposes, a regulated entity would typically ensure that users and information assets are uniquely identified and their actions are logged at a sufficient level of granularity to support information security monitoring processes.
- ID:
/frameworks/apra-cpg-234/c/8
- Located in: 💼 Attachment C - Identity and access
Description
Empty...
Similar
- Internal
- ID:
dec-c-fd408e86
- ID:
Sub Sections
Section | Sub Sections | Internal Rules | Policies | Flags |
---|
Policies (2)
Policy | Logic Count | Flags |
---|---|---|
📝 AWS API Gateway API Access Logging in CloudWatch is not enabled 🟢 | 1 | 🟠 x1, 🟢 x5 |
📝 Azure Diagnostic Setting captures Administrative, Alert, Policy, and Security categories 🟢 | 1 | 🟢 x6 |
Internal Rules
Rule | Policies | Flags |
---|---|---|
✉️ dec-x-a193b20f | 1 | |
✉️ dec-x-d75f6d86 | 1 |