NIST 800-171 v2

110 security requirements available

3.3.5Derived Requirement

Audit and Accountability

Security Requirement

Correlate audit record review, analysis, and reporting processes for investigation and response to indications of unlawful, unauthorized, suspicious, or unusual activity.

Discussion

Correlating audit record review, analysis, and reporting processes helps to ensure that they do not operate independently, but rather collectively. Regarding the assessment of a given organizational system, the requirement is agnostic as to whether this correlation is applied at the system level or at the organization level across all systems.

Framework
NIST SP 800-171 Rev 2
Family
Audit and Accountability
Requirement Type
derived

Related Frameworks

7 paths across 3 frameworks
SCF1 mapping
MON-02.1Correlate Monitoring Information
0.50
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • Secure Controls Framework · 2026.2 · scf_strm · related
NIST 800-531 mapping
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
CCI5 mappings
CCI-000153
1.00
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-001283
0.50
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • Secure Controls Framework · 2026.2 · scf_strm · related
  • Secure Controls Framework · 2026.2 · scf_strm · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-004981
0.50
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • Secure Controls Framework · 2026.2 · scf_strm · related
  • Secure Controls Framework · 2026.2 · scf_strm · equivalent
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-000829
0.25
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • Secure Controls Framework · 2026.2 · scf_strm · related
  • Secure Controls Framework · 2026.2 · scf_strm · related
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-001871
0.25
  • NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
  • Secure Controls Framework · 2026.2 · scf_strm · related
  • Secure Controls Framework · 2026.2 · scf_strm · related
  • DISA · 2025-01-23 · disa_cci_list · equivalent

Related STIGs

87 STIGs reach this control through 24 CCIs via 800-53 control AU-6. Expand a row to see the responsible NICE and O*NET roles.

Operating System - Desktop

4 STIGs

Operating System - Server

12 STIGs
Anduril NixOS Security Technical Implementation Guide
V1R22025-08-193 of 103 findings match
Show 4 more STIGs in this category →
Oracle Linux 9 Security Technical Implementation Guide
V1R52026-02-171 of 448 findings match

Operating System - Mainframe

2 STIGs
Mainframe Product Security Requirements Guide
32024-12-052 of 193 findings match
Mainframe Product Security Requirements Guide
V3R42025-09-102 of 194 findings match

Operating System - Mobile

18 STIGs
Show 10 more STIGs in this category →

Network Device

5 STIGs

Database

3 STIGs
Database Security Requirements Guide
42024-12-041 of 142 findings match
Database Security Requirements Guide
V4R52026-02-261 of 142 findings match

Web / Application Server

10 STIGs

Virtualization / Container

6 STIGs

Endpoint Security Management

8 STIGs

Uncategorized

19 STIGs
Mainframe Product Security Requirements Guide
V3R52026-05-232 of 194 findings match
Show 11 more STIGs in this category →
Oracle Linux 9 Security Technical Implementation Guide
V1R62026-05-141 of 448 findings match
Virtual Machine Manager Security Requirements Guide
V2R42026-06-291 of 198 findings match
Web Server Security Requirements Guide
V4R52026-05-231 of 126 findings match