STIGhubSTIGhub
STIGsRMF ControlsCompare
STIGhub— A free STIG search and compliance tool·STIGs updated 3 days ago
Powered by Pylon·Privacy·Terms·© 2026 Beacon Cloud Solutions, Inc.
← All Controls

AU-3

Audit and AccountabilityRev 5system

Content of Audit Records

Baselines:LowModerateHigh

Control Statement

Ensure that audit records contain information that establishes the following:

Supplemental Guidance

Audit record content that may be necessary to support the auditing function includes event descriptions (item a), time stamps (item b), source and destination addresses (item c), user or process identifiers (items d and f), success or fail indications (item e), and filenames involved (items a, c, e, and f) . Event outcomes include indicators of event success or failure and event-specific results, such as the system security and privacy posture after the event occurred. Organizations consider how audit records can reveal information about individuals that may give rise to privacy risks and how best to mitigate such risks. For example, there is the potential to reveal personally identifiable information in the audit trail, especially if the trail records inputs or is based on patterns or time of usage.

Related Controls (9)

AU-2AU-8AU-12AU-14MA-4PL-9SA-8SI-7SI-11

CCI Identifiers (6)

CCI-000131Ensure that audit records containing information that establishes when the event occurred.CCI-000130Ensure that audit records contain information that establishes what type of event occurred.CCI-000132Ensure that audit records containing information that establishes where the event occurred.CCI-001487Ensure that audit records containing information that establishes the identity of any individuals, subjects, or objects/entities associated with the event.CCI-000133Ensure that audit records containing information that establishes the source of the event.CCI-000134Ensure that audit records containing information that establishes the outcome of the event.

Linked STIG Checks (200)

Across 52 STIGs. Click to expand.