AU.L2-3.3.6 Reduction & Reporting

CMMC Practice AU.L2-3.3.6 – Reduction & Reporting: Provide audit record reduction and report generation to support on-demand analysis and reporting. Links to Publicly Available Resources CMMC Level 2 Assessment Guide This document provides assessment...

AU.L2-3.3.5 Audit Correlation

CMMC Practice AU.L2-3.3.5 – Audit Correlation: Correlate audit record review, analysis, and reporting processes for investigation and response to indications of unlawful, unauthorized, suspicious, or unusual activity. Links to Publicly Available Resources CMMC...

AU.L2-3.3.9 Audit Management

CMMC Practice AU.L2-3.3.9 – Audit Management: Limit management of audit logging functionality to a subset of privileged users. Links to Publicly Available Resources BrightTALK – Log Management: Achieving Compliance Objectives This video discusses common...

AU.L2-3.3.8 Audit Protection

CMMC Practice AU.L2-3.3.8 – Audit Protection: Protect audit information and audit logging tools from unauthorized access, modification, and deletion. Links to Publicly Available Resources BrightTALK – Log Management: Achieving Compliance Objectives...

AU.L2-3.3.4 Audit Failure Alerting

CMMC Practice AU.L2-3.3.4 – Audit Failure Alerting: Alert in the event of an audit logging process failure. Links to Publicly Available Resources CMMC Level 2 Assessment Guide This document provides assessment guidance for conducting Cybersecurity Maturity Model...

AU.L2-3.3.3 Event Review

CMMC Practice AU.L2-3.3.3 – Event Review: Review and update logged events. Links to Publicly Available Resources CMMC Level 2 Assessment Guide This document provides assessment guidance for conducting Cybersecurity Maturity Model Certification (CMMC) assessments...