💼 AU-6 Audit Record Review, Analysis, and Reporting (L)(M)(H)
- ID:
/frameworks/fedramp-high-security-controls/au/06
Description
a. Review and analyze system audit records [FedRAMP Assignment: at least weekly] for indications of [Assignment: organization-defined inappropriate or unusual activity] and the potential impact of the inappropriate or unusual activity;
b. Report findings to [Assignment: organization-defined personnel or roles]; and
c. Adjust the level of audit record review, analysis, and reporting within the system when there is a change in risk based on law enforcement information, intelligence information, or other credible sources of information.
AU-6 Additional FedRAMP Requirements and Guidance:
Requirement: Coordination between service provider and consumer shall be documented and accepted by the JAB/AO. In multi-tenant environments, capability and means for providing review, analysis, and reporting to consumer for data pertaining to consumer shall be documented.
Similar
- Sections
/frameworks/nist-sp-800-53-r5/au/06
- Internal
- ID:
dec-c-9bf5fa59
- ID:
Similar Sections (Take Policies From)
| Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
|---|---|---|---|---|---|
| 💼 NIST SP 800-53 Revision 5 → 💼 AU-6 Audit Record Review, Analysis, and Reporting | 10 | 1 | 13 | no data |
Similar Sections (Give Policies To)
| Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
|---|---|---|---|---|---|
| 💼 FedRAMP Low Security Controls → 💼 AU-6 Audit Record Review, Analysis, and Reporting (L)(M)(H) | 24 | no data | |||
| 💼 FedRAMP Moderate Security Controls → 💼 AU-6 Audit Record Review, Analysis, and Reporting (L)(M)(H) | 2 | 32 | no data |
Sub Sections
| Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
|---|---|---|---|---|---|
| 💼 AU-6(1) Automated Process Integration (M)(H) | 3 | no data | |||
| 💼 AU-6(3) Correlate Audit Record Repositories (M)(H) | 8 | no data | |||
| 💼 AU-6(4) Central Review and Analysis (H) | 8 | no data | |||
| 💼 AU-6(5) Integrated Analysis of Audit Records (H) | 2 | no data | |||
| 💼 AU-6(6) Correlation with Physical Monitoring (H) | no data | ||||
| 💼 AU-6(7) Permitted Actions (H) | no data |
Policies (24)
Internal Rules
| Rule | Policies | Flags |
|---|---|---|
| ✉️ dec-x-0c82d775 | 1 | |
| ✉️ dec-x-8a1ecfd0 | 1 | |
| ✉️ dec-x-9b79d91f | 1 | |
| ✉️ dec-x-9c041667 | 1 | |
| ✉️ dec-x-20c9ef83 | 1 | |
| ✉️ dec-x-24bba483 | 1 | |
| ✉️ dec-x-52ca1960 | 1 | |
| ✉️ dec-x-89d5ed7a | 1 | |
| ✉️ dec-x-157aa4b9 | 1 | |
| ✉️ dec-x-351e376f | 1 | |
| ✉️ dec-x-611eaa35 | 1 | |
| ✉️ dec-x-1518c16e | 1 | |
| ✉️ dec-x-79579ed7 | 1 | |
| ✉️ dec-x-9002886f | 1 | |
| ✉️ dec-x-ab7fc52e | 1 | |
| ✉️ dec-x-b2ce0ca1 | 1 | |
| ✉️ dec-x-c397d3ca | 2 | |
| ✉️ dec-x-db1b7a1b | 1 | |
| ✉️ dec-x-dc359e59 | 1 | |
| ✉️ dec-x-e0014333 | 2 |