Skip to main content

πŸ’Ό 10.6.1 Review security events and critical system component logs at least daily.

Description​

Including the following:

  • All security events
  • Logs of all system components that store, process, or transmit CHD and/or SAD
  • Logs of all critical system components
  • Logs of all servers and system components that perform security functions (for example, firewalls, intrusion-detection systems/intrusion-prevention systems (IDS/IPS), authentication servers, e-commerce redirection servers, etc.)

Similar​

  • Sections
    • /frameworks/pci-dss-v4.0/10/04/01/01
    • /frameworks/pci-dss-v4.0/10/04/01
    • /frameworks/pci-dss-v4.0/10/04/02/01
  • Internal
    • ID: dec-c-d77d385a

Similar Sections (Take Policies From)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό PCI DSS v4.0 β†’ πŸ’Ό 10.4.1 The audit logs are reviewed at least once daily.1
πŸ’Ό PCI DSS v4.0 β†’ πŸ’Ό 10.4.1.1 Automated mechanisms are used to perform audit log reviews.
πŸ’Ό PCI DSS v4.0 β†’ πŸ’Ό 10.4.2.1 The frequency of periodic log reviews for all other system components is defined in the entity's targeted risk analysis.

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό PCI DSS v4.0 β†’ πŸ’Ό 10.4.1 The audit logs are reviewed at least once daily.1
πŸ’Ό PCI DSS v4.0 β†’ πŸ’Ό 10.4.1.1 Automated mechanisms are used to perform audit log reviews.
πŸ’Ό PCI DSS v4.0 β†’ πŸ’Ό 10.4.2.1 The frequency of periodic log reviews for all other system components is defined in the entity's targeted risk analysis.

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags