This NIST 800-53 report is posted on the Internet to promote Version 3.0 of LJK/Security . The corresponding vulnerability report for your own system should be guarded more carefully, such as by being reviewed only from local HTML disk files rather than via a web server.

Return to Main Page
Manual Examination AC_13_1_6

FIPS 199 High Impact (for ICS)

Findings Color Code
Satisfied
Other Than Satisfied - not assessed
Other Than Satisfied - failed

NIST SP 800-53A AC-13 .01

Question: Does a review of 33 percent (but no fewer than 2) records of organizational action taken in response to anomalies that were found when reviewing audit logs show the actions taken are those required by the access control policy and the procedures addressing supervision and review of access control enforcement and usage ?

Answered by: BOSTON::FORD

As part of Manual Examination group: AUDIT

Answer: YES

This NIST 800-53 report is posted on the Internet to promote Version 3.0 of LJK/Security . The corresponding vulnerability report for your own system should be guarded more carefully, such as by being reviewed only from local HTML disk files rather than via a web server.