πΌ CA-7 Continuous Monitoring
- Contextual name: πΌ CA-7 Continuous Monitoring
- ID:
/frameworks/nist-sp-800-53-r5/ca/07
- Located in: πΌ CA Assessment, Authorization, And Monitoring
Descriptionβ
Develop a system-level continuous monitoring strategy and implement continuous monitoring in accordance with the organization-level continuous monitoring strategy that includes: a. Establishing the following system-level metrics to be monitored: [Assignment: organization-defined system-level metrics]; b. Establishing [Assignment: organization-defined frequencies] for monitoring and [Assignment: organization-defined frequencies] for assessment of control effectiveness; c. Ongoing control assessments in accordance with the continuous monitoring strategy; d. Ongoing monitoring of system and organization-defined metrics in accordance with the continuous monitoring strategy; e. Correlation and analysis of information generated by control assessments and monitoring; f. Response actions to address results of the analysis of control assessment and monitoring information; and g. Reporting the security and privacy status of the system to [Assignment: organization-defined personnel or roles] [Assignment: organization-defined frequency].
Similarβ
- Sections
/frameworks/aws-fsbp-v1.0.0/api-gateway/01
/frameworks/aws-fsbp-v1.0.0/api-gateway/03
/frameworks/aws-fsbp-v1.0.0/api-gateway/09
/frameworks/aws-fsbp-v1.0.0/auto-scaling/01
/frameworks/aws-fsbp-v1.0.0/cloudfront/05
/frameworks/aws-fsbp-v1.0.0/cloudtrail/01
/frameworks/aws-fsbp-v1.0.0/cloudtrail/05
/frameworks/aws-fsbp-v1.0.0/codebuild/04
/frameworks/aws-fsbp-v1.0.0/dms/07
/frameworks/aws-fsbp-v1.0.0/dms/08
/frameworks/aws-fsbp-v1.0.0/documentdb/04
/frameworks/aws-fsbp-v1.0.0/ec2/06
/frameworks/aws-fsbp-v1.0.0/ec2/51
/frameworks/aws-fsbp-v1.0.0/ecs/09
/frameworks/aws-fsbp-v1.0.0/ecs/12
/frameworks/aws-fsbp-v1.0.0/eks/08
/frameworks/aws-fsbp-v1.0.0/elastic-beanstalk/01
/frameworks/aws-fsbp-v1.0.0/elb/05
/frameworks/aws-fsbp-v1.0.0/es/04
/frameworks/aws-fsbp-v1.0.0/es/05
/frameworks/aws-fsbp-v1.0.0/guardduty/01
/frameworks/aws-fsbp-v1.0.0/macie/01
/frameworks/aws-fsbp-v1.0.0/macie/02
/frameworks/aws-fsbp-v1.0.0/neptune/02
/frameworks/aws-fsbp-v1.0.0/network-firewall/02
/frameworks/aws-fsbp-v1.0.0/opensearch/04
/frameworks/aws-fsbp-v1.0.0/opensearch/05
/frameworks/aws-fsbp-v1.0.0/route-53/02
/frameworks/aws-fsbp-v1.0.0/rds/06
/frameworks/aws-fsbp-v1.0.0/rds/09
/frameworks/aws-fsbp-v1.0.0/rds/19
/frameworks/aws-fsbp-v1.0.0/rds/20
/frameworks/aws-fsbp-v1.0.0/rds/21
/frameworks/aws-fsbp-v1.0.0/rds/22
/frameworks/aws-fsbp-v1.0.0/rds/34
/frameworks/aws-fsbp-v1.0.0/rds/40
/frameworks/aws-fsbp-v1.0.0/redshift/04
/frameworks/aws-fsbp-v1.0.0/s3/09
/frameworks/aws-fsbp-v1.0.0/transfer-family/03
/frameworks/aws-fsbp-v1.0.0/waf/01
/frameworks/aws-fsbp-v1.0.0/waf/12
- Internal
- ID:
dec-c-0025b507
- ID:
Similar Sections (Take Policies From)β
Similar Sections (Give Policies To)β
Sub Sectionsβ
Policies (8)β
Policy | Logic Count | Flags |
---|---|---|
π AWS Account Multi-Region CloudTrail is not enabled π’ | 1 | π’ x6 |
π AWS API Gateway API Access Logging in CloudWatch is not enabled π’ | 1 | π x1, π’ x5 |
π AWS API Gateway API Execution Logging in CloudWatch is not enabled π’ | 1 | π’ x6 |
π AWS API Gateway REST API Stage X-Ray Tracing is not enabled π’ | 1 | π’ x6 |
π AWS CloudTrail S3 Bucket Access Logging is not enabled. π’ | 1 | π’ x6 |
π AWS EC2 Auto Scaling Group behind ELB doesn't use ELB health check π’ | 1 | π’ x6 |
π AWS S3 Bucket Server Access Logging is not enabled π’ | 1 | π’ x6 |
π AWS VPC Flow Logs are not enabled π’ | 1 | π x1, π’ x5 |