πΌ AU-6 Audit Record Review, Analysis, and Reporting (L)(M)(H)
- Contextual name: πΌ AU-6 Audit Record Review, Analysis, and Reporting (L)(M)(H)
- ID:
/frameworks/fedramp-low-security-controls/au/06
- Located in: πΌ Audit and Accountability
Descriptionβ
a. Review and analyze system audit records [FedRAMP Assignment: at least weekly] for indications of [Assignment: organization-defined inappropriate or unusual activity] and the potential impact of the inappropriate or unusual activity;
b. Report findings to [Assignment: organization-defined personnel or roles]; and
c. Adjust the level of audit record review, analysis, and reporting within the system when there is a change in risk based on law enforcement information, intelligence information, or other credible sources of information.
AU-6 Additional FedRAMP Requirements and Guidance:
Requirement: Coordination between service provider and consumer shall be documented and accepted by the JAB/AO. In multi-tenant environments, capability and means for providing review, analysis, and reporting to consumer for data pertaining to consumer shall be documented.
Similarβ
- Sections
/frameworks/nist-sp-800-53-r5/au/06
/frameworks/fedramp-high-security-controls/au/06
- Internal
- ID:
dec-c-9bf5fa59
- ID:
Similar Sections (Take Policies From)β
Section | Sub Sections | Internal Rules | Policies | Flags |
---|---|---|---|---|
πΌ FedRAMP High Security Controls β πΌ AU-6 Audit Record Review, Analysis, and Reporting (L)(M)(H) | 6 | 21 | 26 | |
πΌ NIST SP 800-53 Revision 5 β πΌ AU-6 Audit Record Review, Analysis, and Reporting | 10 | 1 | 7 |
Sub Sectionsβ
Section | Sub Sections | Internal Rules | Policies | Flags |
---|