Skip to main content

πŸ’Ό 11.5.2 A change-detection mechanism (for example, file integrity monitoring tools) is deployed.

Description​

As follows:

  • To alert personnel to unauthorized modification (including changes, additions, and deletions) of critical files.
  • To perform critical file comparisons at least once weekly.

Similar​

  • Sections
    • /frameworks/pci-dss-v4.0/11/05/02
    • /frameworks/aws-fsbp-v1.0.0/rds/20
    • /frameworks/aws-fsbp-v1.0.0/rds/21
    • /frameworks/aws-fsbp-v1.0.0/rds/22

Similar Sections (Take Policies From)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό AWS Foundational Security Best Practices v1.0.0 β†’ πŸ’Ό [RDS.20] Existing RDS event notification subscriptions should be configured for critical database instance events
πŸ’Ό AWS Foundational Security Best Practices v1.0.0 β†’ πŸ’Ό [RDS.21] An RDS event notifications subscription should be configured for critical database parameter group events
πŸ’Ό AWS Foundational Security Best Practices v1.0.0 β†’ πŸ’Ό [RDS.22] An RDS event notifications subscription should be configured for critical database security group events
πŸ’Ό PCI DSS v4.0 β†’ πŸ’Ό 11.5.2 A change-detection mechanism (for example, file integrity monitoring tools) is deployed.1

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό PCI DSS v4.0 β†’ πŸ’Ό 11.5.2 A change-detection mechanism (for example, file integrity monitoring tools) is deployed.1

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags

Policies (1)​

PolicyLogic CountFlags
πŸ“ AWS Account Config is not enabled in all regions 🟒1🟒 x6