unified

UC-LOG-01 — Log security-relevant events across all systems

Enable audit logging on all systems, applications, and network components, generating records for a defined catalog of security-relevant event types — at minimum authentication, all access to sensitive or regulated data (such as cardholder data), privileged actions, account and configuration changes, and security-tool events. Review and update the event catalog periodically with system owners, ensure logging is enabled by default on newly deployed components, and verify logging coverage on a defined cadence.

Record JSON · Open in map · Data retrieval guide

Catalog revision: 24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028. A connection does not establish full coverage.

Attributes

domain
Logging, Monitoring & Detection
type
detective
category
technical

Details

unified_id
UC-LOG-01
title
Log security-relevant events across all systems
statement
Enable audit logging on all systems, applications, and network components, generating records for a defined catalog of security-relevant event types — at minimum authentication, all access to sensitive or regulated data (such as cardholder data), privileged actions, account and configuration changes, and security-tool events. Review and update the event catalog periodically with system owners, ensure logging is enabled by default on newly deployed components, and verify logging coverage on a defined cadence.
domain
Logging, Monitoring & Detection
control_type
detective
control_category
technical
members
  • framework
    nist-800-53
    control_id
    AU-2
    coverage
    full
    relationship
    superset_of
  • framework
    nist-800-53
    control_id
    AU-12
    coverage
    full
    relationship
    superset_of
  • framework
    iso-27001
    control_id
    A.8.15
    coverage
    partial
    delta
    also requires protecting, storing, and analysing produced logs
    relationship
    intersects_with
  • framework
    pci-dss
    control_id
    PCI-Req10
    coverage
    partial
    delta
    also requires daily review, 12-month retention, time synchronization, log protection
    relationship
    intersects_with
  • framework
    hipaa
    control_id
    HIPAA-164.312(b)
    coverage
    full
    relationship
    superset_of
guidance
  • source
    nist-ai-agent-identity
    sourceTitle
    NIST NCCoE: Software and AI Agent Identity and Authorization
    propositionId
    NIST-AGI-05
    propositionTitle
    Verifiable agent action logs and authorization traceability
    sourcePages
    Concept paper pp. 4, 6: Auditing and non-repudiation; Logging and Transparency

Source

No record-specific source URL is provided.

Connections