{"catalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","kind":"record","record":{"attributes":{"category":"technical","domain":"Network & Communications Security","type":"preventive"},"canonicalUrl":"https://controlsmap.com/?v=1&node=uc%3AUC-LOG-08","description":"Secure and actively manage networks and network services: document the security features, service levels, and management responsibilities of all network services (including outsourced ones), harden and control network devices, and monitor delivered network services for conformance with the documented security features and service levels, addressing deviations.","details":{"control_category":"technical","control_type":"preventive","domain":"Network & Communications Security","guidance":[],"members":[{"control_id":"A.8.20","coverage":"full","framework":"iso-27001","relationship":"superset_of"},{"control_id":"A.8.21","coverage":"full","framework":"iso-27001","relationship":"superset_of"}],"statement":"Secure and actively manage networks and network services: document the security features, service levels, and management responsibilities of all network services (including outsourced ones), harden and control network devices, and monitor delivered network services for conformance with the documented security features and service levels, addressing deviations.","title":"Secure and monitor networks and network services","unified_id":"UC-LOG-08"},"id":"uc:UC-LOG-08","mapUrl":"https://controlsmap.com/?v=1&node=uc%3AUC-LOG-08","sourceIds":["iso-27001"],"sourceUrl":null,"title":"UC-LOG-08 — Secure and monitor networks and network services","type":"unified"},"relationships":[{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:139e717a2cf7578bc367a07640ab98203c1e37d9070efbc089ea7155e43fe636","properties":{},"sourceDetailPath":"/data/v1/records/wf-c9-75fb1752.json","sourceId":"wf:C9","targetDetailPath":"/data/v1/records/uc-uc-log-08-61745e12.json","targetId":"uc:UC-LOG-08","type":"tests"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:1b2c22eeae869b39fa5fb5b41e3a9cefd803ea5588680b936e888bbebba5e62f","properties":{},"sourceDetailPath":"/data/v1/records/wf-c55-3a35dd8b.json","sourceId":"wf:C55","targetDetailPath":"/data/v1/records/uc-uc-log-08-61745e12.json","targetId":"uc:UC-LOG-08","type":"operates"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:26e3a119a1596b0c03c82ebc66f13d775d1218009c0b4aab3b94001a4791c19c","properties":{},"sourceDetailPath":"/data/v1/records/wf-d06-c9616fb8.json","sourceId":"wf:D06","targetDetailPath":"/data/v1/records/uc-uc-log-08-61745e12.json","targetId":"uc:UC-LOG-08","type":"tests"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:75dcbcac446768a354cbd605bd37f59a0e6a00b2e4411f342ea754bb5fb96e62","properties":{"rationale":"Actively securing networks and hardening network devices strengthens the perimeter, though segmentation/firewalls (UC-NET-01) are the operative boundary defense.","strength":"related"},"sourceDetailPath":"/data/v1/records/uc-uc-log-08-61745e12.json","sourceId":"uc:UC-LOG-08","targetDetailPath":"/data/v1/records/risk-net-poor-perimeter-architecture-26b5f06f.json","targetId":"risk:net-poor-perimeter-architecture","type":"mitigates"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:8fa51112840e5a5515eb1beabbbb050a75ceb5c4621be9aaace35a0ba509381e","properties":{"rationale":"Hardening/controlling network devices and monitoring network services for conformance with documented security features directly reduces misconfigured and unauthorized-exposure conditions.","strength":"primary"},"sourceDetailPath":"/data/v1/records/uc-uc-log-08-61745e12.json","sourceId":"uc:UC-LOG-08","targetDetailPath":"/data/v1/records/risk-config-internet-exposed-misconfig-61b3613a.json","targetId":"risk:config-internet-exposed-misconfig","type":"mitigates"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:b7b3ceac0daac147fd82e8033c375b3cfbb55fab37fca4f509a85bfb003a4830","properties":{"control_id":"A.8.20","coverage":"full","delta":null,"framework":"iso-27001","provenance":{"defaultConfidence":"medium","defaultStatus":"active","direction":"canonical_to_source","mapper":"coworkcanvas-compliance-graph","note":"Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.","reviewDate":"2026-09-07"},"relationship":"superset_of","source_version":"2022"},"sourceDetailPath":"/data/v1/records/uc-uc-log-08-61745e12.json","sourceId":"uc:UC-LOG-08","targetDetailPath":"/data/v1/records/ctrl-iso-27001-a-8-20-68d4486b.json","targetId":"ctrl:iso-27001:A.8.20","type":"maps_to"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:db5684f229b26006269194ee553baf34a83d4a5826de3ec5189802ca226dc43d","properties":{},"sourceDetailPath":"/data/v1/records/wf-a1-f09c8201.json","sourceId":"wf:A1","targetDetailPath":"/data/v1/records/uc-uc-log-08-61745e12.json","targetId":"uc:UC-LOG-08","type":"tests"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:f72c4c986f7ebc639fd56c06a35a787752152ccc5a7ef9964e6135a8250f5093","properties":{"control_id":"A.8.21","coverage":"full","delta":null,"framework":"iso-27001","provenance":{"defaultConfidence":"medium","defaultStatus":"active","direction":"canonical_to_source","mapper":"coworkcanvas-compliance-graph","note":"Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.","reviewDate":"2026-09-07"},"relationship":"superset_of","source_version":"2022"},"sourceDetailPath":"/data/v1/records/uc-uc-log-08-61745e12.json","sourceId":"uc:UC-LOG-08","targetDetailPath":"/data/v1/records/ctrl-iso-27001-a-8-21-5b64f0ec.json","targetId":"ctrl:iso-27001:A.8.21","type":"maps_to"}],"schemaVersion":1}
