Provide cross-organizational audit information to [organization-defined] based on [organization-defined].
Skills in this repository
CyberStrikeus/CyberStrike - Page 120
SkillsMP has collected 7,442 skills from CyberStrikeus/CyberStrike. Open a skill to review its source and details.
CyberStrikeus/CyberStrikeShowing 40 of 7,442 collected skills.
Implement [organization-defined] to disassociate individuals from audit information transmitted across organizational boundaries.
Employ [organization-defined] for coordinating [organization-defined] among external organizations when audit information is transmitted across organi
Compilation of Audit Records from Multiple Sources
Selection of Audit Events by Component
Reviews and Updates
Privileged Functions
Identify the types of events that the system is capable of logging in support of the audit function: [organization-defined];
Generate audit records containing the following additional information: [organization-defined].
Centralized Management of Planned Audit Record Content
Limit personally identifiable information contained in audit records to the following elements identified in the privacy risk assessment: [organizatio
Ensure that audit records contain information that establishes the following: What type of event occurred; When the event occurred; Where the event oc
Transfer audit logs [organization-defined] to a different system, system component, or media other than the system or system component conducting the
Allocate audit log storage capacity to accommodate [organization-defined].
Provide a warning to [organization-defined] within [organization-defined] when allocated audit log storage volume reaches [organization-defined] of re
Provide an alert within [organization-defined] to [organization-defined] when the following audit failure events occur: [organization-defined].
Enforce configurable network communications traffic volume thresholds reflecting limits on audit log storage capacity and [organization-defined] netwo
Invoke a [organization-defined] in the event of [organization-defined] , unless an alternate audit logging capability exists.
Provide an alternate audit logging capability in the event of a failure in primary audit logging capability that implements [organization-defined].
Alert [organization-defined] within [organization-defined] in the event of an audit logging process failure;
Integrate audit record review, analysis, and reporting processes using [organization-defined].
Audit Level Adjustment
Automated Security Alerts
Analyze and correlate audit records across different repositories to gain organization-wide situational awareness.
Provide and implement the capability to centrally review and analyze audit records from multiple components within the system.
Integrate analysis of audit records with analysis of [organization-defined] to further enhance the ability to identify inappropriate or unusual activi
Correlate information from audit records with information obtained from monitoring physical access to further enhance the ability to identify suspicio
Specify the permitted actions for each [organization-defined] associated with the review, analysis, and reporting of audit record information.
Perform a full text analysis of logged privileged commands in a physically distinct component or subsystem of the system, or other system that is dedi
Correlate information from nontechnical sources with audit record information to enhance organization-wide situational awareness.
Review and analyze system audit records [organization-defined] for indications of [organization-defined] and the potential impact of the inappropri...
Provide and implement the capability to process, sort, and search audit records for events of interest based on the following content: [organization-d
Automatic Sort and Search
Provide and implement an audit record reduction and report generation capability that: Supports on-demand audit record review, analysis, and reporting
Synchronization with Authoritative Time Source
Secondary Authoritative Time Source
Use internal system clocks to generate time stamps for audit records;
Write audit trails to hardware-enforced, write-once media.
Store audit records [organization-defined] in a repository that is part of a physically different system or system component than the system or compon
Implement cryptographic mechanisms to protect the integrity of audit information and audit tools.