Procedure Step:Monitoring Procedures
Audit Step:
To determine if the agency has implemented clearly defined monitoring practices that ensure information security policies and procedures are followed related to the application. This includes "day-to-day and investigative monitoring" over "intrusion detection reports and daily usage logs" for servers, mainframes, firewalls and relevant networks.
Purpose:
To evaluate whether adequate steps have been taken to ensure agency information security procedures are functioning as intended.

