DE.CM: Continuous Monitoring
Previous Version:
- NIST Cybersecurity Framework v1.1:
- DE.CM: Security Continuous Monitoring
Description
Assets are monitored to find anomalies, indicators of compromise, and other potentially adverse events
Framework Subcategories
DE.CM-01: Networks and network services are monitored to find potentially adverse events
[csf.tools Note: Subcategories do not have detailed descriptions.]
DE.CM-02: The physical environment is monitored to find potentially adverse events
[csf.tools Note: Subcategories do not have detailed descriptions.]
DE.CM-03: Personnel activity and technology usage are monitored to find potentially adverse events
[csf.tools Note: Subcategories do not have detailed descriptions.]
DE.CM-06: External service provider activities and services are monitored to find potentially adverse events
[csf.tools Note: Subcategories do not have detailed descriptions.]
DE.CM-09: Computing hardware and software, runtime environments, and their data are monitored to find potentially adverse events
[csf.tools Note: Subcategories do not have detailed descriptions.]