Description
The organization: AU-2a. Determines that the information system is capable of auditing the following events: [Assignment: organization-defined auditable events]; AU-2b. Coordinates the security audit function with other organizational entities requiring audit-related information to enhance mutual support and to help guide the selection of auditable events; AU-2c. Provides a rationale for why the auditable events are deemed to be adequate to support after-the-fact investigations of security incidents; and AU-2d. Determines that the following events are to be audited within the information system: [Assignment: organization-defined audited events (the subset of the auditable events defined in AU-2 a.) along with the frequency of (or situation requiring) auditing for each identified event].
Similar
Similar Sections (Give Policies To)
Sub Sections
Policies (4)
Internal Rules
Rule | Policies | Flags |
---|
✉️ dec-x-9c041667 | 1 | |
✉️ dec-x-a5c2acfe | 1 | |
✉️ dec-x-e0014333 | 2 | |