Skip to main content

๐Ÿ’ผ AU-1 AUDIT AND ACCOUNTABILITY POLICY AND PROCEDURES

  • Contextual name: ๐Ÿ’ผ AU-1 AUDIT AND ACCOUNTABILITY POLICY AND PROCEDURES
  • ID: /frameworks/nist-sp-800-53-r4/au/01
  • Located in: ๐Ÿ’ผ AU AUDIT AND ACCOUNTABILITY

Descriptionโ€‹

The organization: AU-1a. Develops, documents, and disseminates to [Assignment: organization-defined personnel or roles]: AU-1a.1. An audit and accountability policy that addresses purpose, scope, roles, responsibilities, management commitment, coordination among organizational entities, and compliance; and AU-1a.2. Procedures to facilitate the implementation of the audit and accountability policy and associated audit and accountability controls; and AU-1b. Reviews and updates the current: AU-1b.1. Audit and accountability policy [Assignment: organization-defined frequency]; and AU-1b.2. Audit and accountability procedures [Assignment: organization-defined frequency].

Similarโ€‹

  • Internal
    • ID: dec-c-b9f6a421

Similar Sections (Give Policies To)โ€‹

SectionSub SectionsInternal RulesPoliciesFlags
๐Ÿ’ผ NIST CSF v1.1 โ†’ ๐Ÿ’ผ ID.GV-1: Organizational cybersecurity policy is established and communicated
๐Ÿ’ผ NIST CSF v1.1 โ†’ ๐Ÿ’ผ ID.GV-3: Legal and regulatory requirements regarding cybersecurity, including privacy and civil liberties obligations, are understood and managed22
๐Ÿ’ผ NIST CSF v1.1 โ†’ ๐Ÿ’ผ PR.PT-1: Audit/log records are determined, documented, implemented, and reviewed in accordance with policy1720

Sub Sectionsโ€‹

SectionSub SectionsInternal RulesPoliciesFlags