The system provides audit record generation for the event types defined in AU-02 on defined components, lets defined roles select which events specific components log, and generates records for the selected events with the content required by AU-03. The GC discussion notes that using personal information for audit purposes is authorized without consent under Privacy Act paragraph 8(2)(h). 4 enhancements.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.