SI-4(2)
SI-4(2): Automated Tools for Real-time Analysis
The organization employs automated tools to support near real-time analysis of events.
Supplemental
Automated tools include, for example, host-based, network-based, transport-based, or storage-based event monitoring tools or Security Information and Event Management (SIEM) technologies that provide real time analysis of alerts and/or notifications generated by organizational information systems.
CIA Levels | |
---|---|
Confidentiality | high |
Integrity | high |
Availability | high |
Overlays |
---|
None |
CSF Categories |
---|
None |