FedRAMP - Process Integration AU-6(1)


Overview:
The organization employs automated mechanisms to integrate audit review, analysis, and reporting processes to support organizational processes for investigation and response to suspicious activities.


Supplemental Guidance:
Organizational processes benefiting from integrated audit review, analysis, and reporting include, for example, incident response, continuous monitoring, contingency planning, and Inspector General audits.


Related controls: AU-12, PM-7.


Action Items:
1) Establish automated processes to review, analyze, and report on logs and monitoring events


Related Documents:
1) Audit and Accountability Policy

2) Logging and Monitoring Policy

3) Incident Response Policy


Additional Guidance:
Moderate FedRAMP-Defined Assignment / Selection Parameters
none


Moderate Additional FedRAMP Requirements and Guidance
none



Article ID: 614
Created: September 29, 2022
Last Updated: September 29, 2022
Author: Matthew Burdick

Online URL: http://www.compliancewiki.org/article/fedramp-process-integration-au-6-1-614.html