Under active development Content is continuously updated and improved

DE.CM-01Networks and network services are monitored to find potentially adverse events

>Control Description

This continuous monitoring subcategory ensures that networks and network services are monitored to find potentially adverse events. Key activities include: Monitor DNS, BGP, and other network services for adverse events; Monitor wired and wireless networks for connections from unauthorized endpoints; Monitor facilities for unauthorized or rogue wireless networks.

>Cross-Framework Mappings

>Informative References

Official NIST mappings to external frameworks and standards. Source: NIST CSF 2.0

CCMv4.0

IVS-03
IVS-09
LOG-01
LOG-03
LOG-05
LOG-08
TVM-02
TVM-10
+1 more

CIS Controls v8.0

13.1

CIS Controls v8.1

13.1

CRI Profile v2.0

DE.CM-01
DE.CM-01.01
DE.CM-01.02
DE.CM-01.03
DE.CM-01.04
DE.CM-01.05
DE.CM-01.06

CSF v1.1

DE.CM-1
DE.CM-4
DE.CM-5
DE.CM-7

ISO/IEC 27001:2022

Mandatory Clause: None
Annex A Controls: 8.16

NICE Framework

DD-WRL-007
IO-WRL-004
IO-WRL-006
OG-WRL-016
PD-WRL-001
PD-WRL-004

PCI DSS

10.2.1
10.4.1
11.2.1
1.2.4

SCF

MON-01
MON-01.1
MON-01.3
MON-01.4
MON-01.8

SP 800-171 Rev 3

03.01.01
03.03.03
03.04.03
03.12.03
03.13.01
03.13.06
03.14.06

SP 800-53 Rev 5.1.1

AC-02
AU-12
CA-07
CM-03
SC-05
SC-07
SI-04

SP 800-53 Rev 5.2.0

AC-02
AU-12
CA-07
CM-03
SC-05
SC-07
SI-04

Ask AI

Configure your API key to use AI features.