CIS Controls v8

CIS 8 Audit Log Management

Starts in IG2 | Capture and preserve telemetry for detection and investigations.

Implementation Actions

  • Define priority log sources.
  • Centralize and protect logs.
  • Monitor logging pipeline health.

Evidence Examples

  • Log source inventory
  • Retention/integrity configs
  • Logging gap remediation

Suggested Metrics

  • Priority log source coverage
  • Logging pipeline reliability