Skip to main content

๐Ÿ’ผ CC7.2-1 Implements Detection Policies, Procedures, and Tools

Descriptionโ€‹

Detection policies and procedures are defined and implemented, and detection tools are implemented on Infrastructure and software to identify anomalies in the operation or unusual activity on systems. Procedures may include (1) a defined governance process for security event detection and management that includes provision of resources; (2) use of intelligence sources to identify newly discovered threats and vulnerabilities; and (3) logging of unusual system activities.

Similarโ€‹

  • Internal
    • ID: dec-c-b18dc75d

Sub Sectionsโ€‹

SectionSub SectionsInternal RulesPoliciesFlags