IDNameBaselinesPriorityThreats
    LowModerateHigh
    AC-20(2)Portable Storage Devices 
    • P1
    STRIDE-LM
    (3)Non-Organizationally Owned Systems / Components / Devices   
    • P1
    STRIDE-LM
    (4)Network Accessible Storage Devices   
    • P1
    STRIDE-LM
    AC-21Information Sharing 
    • P2
    STRIDE-LM
    (1)Automated Decision Support   
    • P2
    STRIDE-LM
    (2)Information Search And Retrieval   
    • P2
    STRIDE-LM
    AC-22Publicly Accessible Content
    • P3
    STRIDE-LM
    AC-23Data Mining Protection   
    • P0
    STRIDE-LM
    AC-24Access Control Decisions   
    • P0
    STRIDE-LM
    (1)Transmit Access Authorization Information   
    • P0
    STRIDE-LM
    (2)No User Or Process Identity   
    • P0
    STRIDE-LM
    AC-25Reference Monitor   
    • P0
    STRIDE-LM
    AT-1Security Awareness And Training Policy And Procedures
    • P1
    STRIDE-LM
    AT-2Security Awareness Training
    • P1
    STRIDE-LM
    (1)Practical Exercises   
    • P1
    STRIDE-LM
    (2)Insider Threat 
    • P1
    STRIDE-LM
    AT-3Role-Based Security Training
    • P1
    STRIDE-LM
    (1)Environmental Controls   
    • P1
    STRIDE-LM
    (2)Physical Security Controls   
    • P1
    STRIDE-LM
    (3)Practical Exercises   
    • P1
    STRIDE-LM
    (4)Suspicious Communications And Anomalous System Behavior   
    • P1
    STRIDE-LM
    AT-4Security Training Records
    • P3
    STRIDE-LM
    AU-1Audit And Accountability Policy And Procedures
    • P1
    STRIDE-LM
    AU-2Audit Events
    • P1
    STRIDE-LM
    (3)Reviews And Updates 
    • P1
    STRIDE-LM
    AU-3Content Of Audit Records
    • P1
    STRIDE-LM
    (1)Additional Audit Information 
    • P1
    STRIDE-LM
    (2)Centralized Management Of Planned Audit Record Content  
    • P1
    STRIDE-LM
    AU-4Audit Storage Capacity
    • P1
    STRIDE-LM
    (1)Transfer To Alternate Storage   
    • P1
    STRIDE-LM
    AU-5Response To Audit Processing Failures
    • P1
    STRIDE-LM
    (1)Audit Storage Capacity  
    • P1
    STRIDE-LM
    (2)Real-Time Alerts  
    • P1
    STRIDE-LM
    (3)Configurable Traffic Volume Thresholds   
    • P1
    STRIDE-LM
    (4)Shutdown On Failure   
    • P1
    STRIDE-LM
    AU-6Audit Review, Analysis, And Reporting
    • P1
    STRIDE-LM
    (1)Process Integration 
    • P1
    STRIDE-LM
    (3)Correlate Audit Repositories 
    • P1
    STRIDE-LM
    (4)Central Review And Analysis   
    • P1
    STRIDE-LM
    (5)Integration / Scanning And Monitoring Capabilities  
    • P1
    STRIDE-LM
    (6)Correlation With Physical Monitoring  
    • P1
    STRIDE-LM
    (7)Permitted Actions   
    • P1
    STRIDE-LM
    (8)Full Text Analysis Of Privileged Commands   
    • P1
    STRIDE-LM
    (9)Correlation With Information From Nontechnical Sources   
    • P1
    STRIDE-LM
    (10)Audit Level Adjustment   
    • P1
    STRIDE-LM
    AU-7Audit Reduction And Report Generation 
    • P2
    STRIDE-LM
    (1)Automatic Processing 
    • P2
    STRIDE-LM
    (2)Automatic Sort And Search   
    • P2
    STRIDE-LM
    AU-8Time Stamps
    • P1
    STRIDE-LM
    (1)Synchronization With Authoritative Time Source 
    • P1
    STRIDE-LM