Skip to main content

💼 AU-6 AUDIT REVIEW, ANALYSIS, AND REPORTING

  • ID: /frameworks/nist-sp-800-53-r4/au/06

Description

The organization: AU-6a. Reviews and analyzes information system audit records [Assignment: organization-defined frequency] for indications of [Assignment: organization-defined inappropriate or unusual activity]; and AU-6b. Reports findings to [Assignment: organization-defined personnel or roles].

Similar

  • Internal
    • ID: dec-c-4db811b3

Similar Sections (Give Policies To)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 NIST CSF v1.1 → 💼 DE.AE-2: Detected events are analyzed to understand attack targets and methods1823no data
💼 NIST CSF v1.1 → 💼 DE.AE-3: Event data are collected and correlated from multiple sources and sensors1837no data
💼 NIST CSF v1.1 → 💼 DE.DP-4: Event detection information is communicated2932no data
💼 NIST CSF v1.1 → 💼 ID.SC-4: Suppliers and third-party partners are routinely assessed using audits, test results, or other forms of evaluations to confirm they are meeting their contractual obligations1519no data
💼 NIST CSF v1.1 → 💼 PR.PT-1: Audit/log records are determined, documented, implemented, and reviewed in accordance with policy1632no data
💼 NIST CSF v1.1 → 💼 RS.AN-1: Notifications from detection systems are investigated1823no data
💼 NIST CSF v1.1 → 💼 RS.CO-2: Incidents are reported consistent with established criteria1922no data

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 AU-6 (1) PROCESS INTEGRATIONno data
💼 AU-6 (2) AUTOMATED SECURITY ALERTSno data
💼 AU-6 (3) CORRELATE AUDIT REPOSITORIESno data
💼 AU-6 (4) CENTRAL REVIEW AND ANALYSISno data
💼 AU-6 (5) INTEGRATION _ SCANNING AND MONITORING CAPABILITIESno data
💼 AU-6 (6) CORRELATION WITH PHYSICAL MONITORINGno data
💼 AU-6 (7) PERMITTED ACTIONSno data
💼 AU-6 (8) FULL TEXT ANALYSIS OF PRIVILEGED COMMANDSno data
💼 AU-6 (9) CORRELATION WITH INFORMATION FROM NONTECHNICAL SOURCESno data
💼 AU-6 (10) AUDIT LEVEL ADJUSTMENTno data

Policies (2)

PolicyLogic CountFlagsCompliance
🛡️ AWS KMS Symmetric CMK Rotation is not enabled🟢1🟢 x6no data
🛡️ Azure Diagnostic Setting for Azure Key Vault is not enabled🟢⚪🟢 x2, ⚪ x1no data

Internal Rules

RulePoliciesFlags
✉️ dec-x-4d6fee7a1
✉️ dec-x-b2ce0ca11