MON-12
Session Audit
Description
Mechanisms exist to provide session audit capabilities that can: (1) Capture and log all content related to a user session; and (2) Remotely view all content related to an established user session in real time.
Control Question
Does the organization provide session audit capabilities that can: (1) Capture and log all content related to a user session; and (2) Remotely view all content related to an established user session in real time?
Control Metadata
Domain:
Continuous Monitoring
Validation Cadence:
Annual
