graphgrc

SCF - MON-02 - Centralized Collection of Security Event Logs

Mechanisms exist to utilize a Security Incident Event Manager (SIEM) or similar automated tool, to support the centralized collection of security-related event logs.

Mapped framework controls

ISO 27002

NIST 800-53

SOC 2

Control questions

Does the organization utilize a Security Incident Event Manager (SIEM) or similar automated tool, to support the centralized collection of security-related event logs?