Under active development Content is continuously updated and improved

DE.AE-03Information is correlated from multiple sources

>Control Description

This adverse event analysis subcategory ensures that information is correlated from multiple sources. Key activities include: Constantly transfer log data generated by other sources to a relatively small number of log servers; Use event correlation technology (e; Utilize cyber threat intelligence to help correlate events among log sources.

>Cross-Framework Mappings

>Informative References

Official NIST mappings to external frameworks and standards. Source: NIST CSF 2.0

CCMv4.0

LOG-03
LOG-05
SEF-05

CRI Profile v2.0

DE.AE-03
DE.AE-03.01
DE.AE-03.02

CSF v1.1

DE.AE-3

ISO/IEC 27001:2022

Mandatory Clause: None
Annex A Controls: 8.15
Annex A Controls: 8.16

NICE Framework

IO-WRL-001
IO-WRL-006
PD-WRL-001
PD-WRL-006

PCI DSS

10.2.1
10.3.3
10.4.1
12.5.1
1.2.4

SCF

MON-02
MON-02.1
IRO-02
IRO-02.5

SP 800-171 Rev 3

03.03.05
03.06.01
03.06.02
03.06.05
03.12.03
03.14.06

SP 800-53 Rev 5.1.1

AU-06
CA-07
PM-16
IR-04
IR-05
IR-08
SI-04

SP 800-53 Rev 5.2.0

AU-06
CA-07
PM-16
IR-04
IR-05
IR-08
SI-04

Ask AI

Configure your API key to use AI features.