ANSSI Guide d'hygiene informatique (42 mesures, v2.0)
ANSSI Hygiene IX: Supervise, Audit and Respond (measures 36 to 40)

ANSSI Guide d'hygiene informatique (42 mesures, v2.0) ANSSI-HYG-36: Enable and Configure Logging on the Most Important Components

Enable and configure the logs of the most important components of the information system so that events can be reconstructed.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

What else in your programme already covers this

This control maps to 76 controls across 26 other frameworks. If you already hold one of them, the evidence you collected for it is the starting point here rather than new work.

FedRAMP High · 5 controls

  • AU-12 Audit Record Generation
  • AU-2 Event Logging
  • AU-3 Content of Audit Records
  • AU-6 Audit Record Review, Analysis, and Reporting
  • SC-45 System Time Synchronization (SC-45)

FedRAMP Moderate · 5 controls

  • AU-12 Audit Record Generation
  • AU-2 Event Logging
  • AU-3 Content of Audit Records
  • AU-6 Audit Record Review, Analysis, and Reporting
  • SC-45 System Time Synchronization (SC-45)

NIST SP 800-53 Rev 5 · 5 controls

ACSC Essential Eight · 4 controls

  • E8-ADMIN-ML2 Restrict Administrative Privileges (ML2)
  • E8-APP-ML2 Application Control (ML2)
  • E8-MFA-ML3 Multi-Factor Authentication - Maturity Level 3
  • E8-UAH-ML3 User Application Hardening - Maturity Level 3
  • ASBv3-GS-7 Define and implement logging, threat detection and incident response strategy
  • ASBv3-LT-6 Configure log storage retention
  • LT-3 Enable logging for security investigation
  • LT-5 Centralize security log management and analysis

CIS Controls v8 · 4 controls

  • CIS-8.1 Establish and Maintain an Audit Log Management Process
  • CIS-8.11 Conduct Audit Log Reviews
  • CIS-8.2 Collect Audit Logs
  • CIS-8.5 Collect Detailed Audit Logs

CMMC 2.0 · 4 controls

NIST SP 800-171 Rev 3 · 4 controls

PCI DSS 4.0 · 4 controls

  • 10.2.1 10.2.1 Audit logging enabled on all system components
  • 10.2.1.2 10.2.1.2 Logs capture all administrative actions
  • 10.2.2 10.2.2 Required details recorded for each auditable event
  • 10.6.1 10.6.1 System clocks synchronized with time-sync technology
  • ASD37-28 Continuous incident detection and response (Excellent)
  • ASD37-31 Hunt to discover incidents (Very Good)
  • ASD37-33 Capture network traffic (Limited)

C5 (Germany) · 3 controls

  • C5-OPS-10 Logging and Monitoring - Concept
  • C5-OPS-13 Logging and Monitoring - Identification of Events
  • C5-OPS-16 Logging and Monitoring - Configuration

HIPAA Security Rule · 3 controls

  • NIST-CSF-DE.AE-02 Potentially adverse events are analyzed to better understand associated activities
  • NIST-CSF-DE.CM-09 Computing hardware and software, runtime environments, and their data are monitored to find potentially adverse events
  • NIST-CSF-PR.PS-04 Log records are generated and made available for continuous monitoring

NIST SP 800-66 Rev 2 · 3 controls

  • SEC04-BP01 Configure service and application logging
  • SEC04-BP02 Capture logs, findings, and metrics in standardized locations

ISO 27001:2022 · 2 controls

ISO 27002:2022 · 2 controls

NIST SP 800-161 Rev 1 · 2 controls

APRA CPS 234 · 1 control

  • CPS234-30 Detection and Response Mechanisms

ISO 27017:2015 · 1 control

  • 12.4 Logging and monitoring

ISO 27018:2019 · 1 control

  • 12.4 Logging and monitoring

ISO 27701:2019 · 1 control

  • 6.9.4 Logging and monitoring

ISO/IEC 42001:2023 · 1 control

  • A.6.2.8 AI system recording of event logs

NIST SP 800-172 · 1 control

  • 3.14.2e Monitor Organizational Systems with Specialized Capabilities

SOC 2 · 1 control

  • SOC2-CC7.2 CC7.2 Monitoring system components for anomalies

Every mapping shown was judged rather than inferred from wording similarity, and the ones that failed review are published too. See the coverage reports and what was rejected.

Other controls in ANSSI Hygiene IX: Supervise, Audit and Respond (measures 36 to 40)

You are reading one control. How much of ANSSI Guide d'hygiene informatique (42 mesures, v2.0) have you already done?

ANSSI Guide d'hygiene informatique (42 mesures, v2.0) ANSSI-HYG-36 is one control. If you already hold one of the frameworks below, a reviewed crosswalk already says how much of ANSSI Guide d'hygiene informatique (42 mesures, v2.0) your existing evidence covers. Hold FedRAMP Moderate and 35 of 42 ANSSI Guide d'hygiene informatique (42 mesures, v2.0) controls already carry evidence.

Each report names every control your existing framework evidences, every one it does not, the reasoning behind each claim, and the claims that were argued against and rejected. 0 were rejected on the FedRAMP Moderate pair alone.

Query this from an agent

The graph holds this control, the 76 it maps to, and the evidence behind each claim, over MCP and REST.