The Mainframe Product must implement the capability to centrally review and analyze audit records from multiple components within the system.

STIG ID: SRG-APP-000745-MFP-000120  |  SRG: SRG-APP-000745 |  Severity: medium |  CCI: CCI-003821 |  Vulnerability Id: V-263671 | 

Vulnerability Discussion

Automated mechanisms for centralized reviews and analyses include Security Information and Event Management products.

Check

Verify the Mainframe Product is configured to implement the capability to centrally review and analyze audit records from multiple components within the system.

If the Mainframe Product is not configured to implement the capability to centrally review and analyze audit records from multiple components within the system, this is a finding.

Fix

Configure the Mainframe Product to implement the capability to centrally review and analyze audit records from multiple components within the system.