The Mainframe Product must implement the capability to centrally review and analyze audit records from multiple components within the system.

Overview

Finding IDVersionRule IDIA ControlsSeverity
V-263671SRG-APP-000745-MFP-000120SV-263671r982581_ruleCCI-003821medium
Description
Automated mechanisms for centralized reviews and analyses include Security Information and Event Management products.
STIGDate
Mainframe Product Security Requirements Guide2024-12-05

Related Frameworks

2 paths across 2 frameworks
NIST 800-531 mapping
  • DISA · 3 · disa_xccdf · related
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI1 mapping
CCI-003821
1.00
  • DISA · 3 · disa_xccdf · related

Details

Check Text (C-263671r982581_chk)

Verify the Mainframe Product is configured to implement the capability to centrally review and analyze audit records from multiple components within the system. If the Mainframe Product is not configured to implement the capability to centrally review and analyze audit records from multiple components within the system, this is a finding.

Fix Text (F-67492r982330_fix)

Configure the Mainframe Product to implement the capability to centrally review and analyze audit records from multiple components within the system.