usnistgov / FederalProfile-8259A

4 stars 8 forks source link

Potential clarification of Audit Support bullets #64

Closed jmarron-acd closed 4 years ago

jmarron-acd commented 4 years ago

Under the first bullet of Audit Support, there are 4 sub-bullets that state: Ability to identify and capture the organizational/user defined events using a persistent method that can be reexamined later. Ability to provide information related to specified cybersecurity events (e.g., cybersecurity state, timestamp) to the organization through organizationally defined means (e.g., logs). Ability to create audit logs within the device for organization-defined and auditable events (e.g. account creation, modification, enabling, disabling, and removal actions and notifications). Ability to audit organization-defined and auditable events (e.g. account creation, modification, enabling, disabling, and removal actions and notifications) that are logged within the device and through device interfaces.

Are these bullets too similar to each other? Do some of them state the same thing? If so, consider rewording to provide distinction between the bullets. Otherwise, perhaps some of these bullets can be removed as duplicates.