Overview

Security Requirements for 03.03.09 Audit Management

Individuals with privileged access to a system and who are also the subject of an audit by that system, may affect the reliability of audit information by inhibiting audit logging activities or modifying audit records. This requirement specifies that privileged access be further defined between audit-related privileges and other privileges, thus limiting the users with audit-related privileges.

Evidence

  1. 03.03.09.a

    A subset of privileged users granted access to manage audit logging functionality is defined

  1. 03.03.09.b

    Management of audit logging functionality is limited to the defined subset of privileged users