3.3.9[a]

  • Determination Statement

    A subset of privileged users granted access to manage audit logging functionality is defined.

  • Requirement

    Limit management of audit logging functionality to a subset of privileged users.

  • Requirement Discussion

    Individuals with privileged access to a system and who are also the subject of an audit by that system, may affect the reliability of audit information by inhibiting audit logging activities or modifying audit records. This requirement specifies that privileged access be further defined between audit-related privileges and other privileges, thus limiting the users with audit-related privileges

More Info

  • Family

    Audit and Accountability
  • DoD Scoring Methodology Points

    1

  • Related NIST 800-171 ID

  • Related CMMC ID

  • Related NIST 800-53 ID

    AU-9(4)

  • Reference Documents

    • N/A

NIST 800-171A Assessment Guidance

CMMC Training

Our CMMC Overview Course simplifies CMMC. Enroll so you can make informed decisions!