Skip to main content

💼 AU-13 Monitoring for Information Disclosure

  • ID: /frameworks/nist-sp-800-53-r5/au/13

Description​

a. Monitor [Assignment: organization-defined open-source information and/or information sites] [Assignment: organization-defined frequency] for evidence of unauthorized disclosure of organizational information; and b. If an information disclosure is discovered:

  1. Notify [Assignment: organization-defined personnel or roles]; and
  2. Take the following additional actions: [Assignment: organization-defined additional actions].

Similar​

  • Internal
    • ID: dec-c-512695e1

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 NIST CSF v2.0 → 💼 DE.CM-03: Personnel activity and technology usage are monitored to find potentially adverse events85no data
💼 NIST CSF v2.0 → 💼 PR.DS-10: The confidentiality, integrity, and availability of data-in-use are protected142no data

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 AU-13(1) Monitoring for Information Disclosure _ Use of Automated Toolsno data
💼 AU-13(2) Monitoring for Information Disclosure _ Review of Monitored Sitesno data
💼 AU-13(3) Monitoring for Information Disclosure _ Unauthorized Replication of Informationno data