NIST 800-53 Rev 5
424 controls available
Store on Separate Physical Systems or Components
Audit and Accountability
Control Statement
Store audit records {{ insert: param, au-09.02_odp }} in a repository that is part of a physically different system or system component than the system or component being audited.
Discussion
Storing audit records in a repository separate from the audited system or system component helps to ensure that a compromise of the system being audited does not also result in a compromise of the audit records. Storing audit records on separate physical systems or components also preserves the confidentiality and integrity of audit records and facilitates the management of audit records as an organization-wide activity. Storing audit records on separate systems or components applies to initial generation as well as backup or long-term storage of audit records.
- Framework
- NIST SP 800-53 Rev 5
- Family
- Audit and Accountability
- Baselines
- high
Related Frameworks
3 paths across 1 framework
Related Frameworks
CCI3 mappings
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
Related STIGs
214 STIGs reach this control through 21 CCIs. Expand a row to see the responsible NICE and O*NET roles.