Audit trail
Term · Cybersecurity · MLC-T-CYB-000312
1. A chronological record that reconstructs and examines the sequence of activities surrounding or leading to a specific operation, procedure, or event in a security-relevant transaction from inception to final result.
2. A record showing who has accessed an information technology (IT) system and what operations the user has performed during a given period.
3. A chronological record that reconstructs and examines the sequence of activities surrounding or leading to a specific operation, procedure, or event in a security relevant transaction from inception to final result.
4. A record showing who has accessed an IT system and what operations the user has performed during a given period.
5. A chronological record that reconstructs and examines the sequence of activities surrounding or leading to a specific operation, procedure, or event in a security-relevant transaction from inception to result.
6. A chronological record of system activities that is sufficient to enable the reconstruction and examination of the sequence of events and activities surrounding or leading to an operation, procedure, or event in a security-relevant transaction from inception to results.
| Identifier | MLC-T-CYB-000312 |
|---|---|
| Field | Cybersecurity |
| References | NIST SP 800-53 Rev. 4 [Superseded] from CNSSI 4009; CNSSI 4009-2015 from NIST SP 800-47; CNSSI 4009-2015; CNSSI 4009-2022 from NCSC-TG-004-88; NIST SP 800-47 [Superseded]; NIST SP 800-37 Rev. 2; NIST SP 800-53 Rev. 5; NISTIR 7316; NIST CSRC Glossary |
Record as JSON
{
"id": "MLC-T-CYB-000312",
"term": "Audit trail",
"field": "Cybersecurity",
"definition": "1. A chronological record that reconstructs and examines the sequence of activities surrounding or leading to a specific operation, procedure, or event in a security-relevant transaction from inception to final result.\n\n2. A record showing who has accessed an information technology (IT) system and what operations the user has performed during a given period.\n\n3. A chronological record that reconstructs and examines the sequence of activities surrounding or leading to a specific operation, procedure, or event in a security relevant transaction from inception to final result.\n\n4. A record showing who has accessed an IT system and what operations the user has performed during a given period.\n\n5. A chronological record that reconstructs and examines the sequence of activities surrounding or leading to a specific operation, procedure, or event in a security-relevant transaction from inception to result.\n\n6. A chronological record of system activities that is sufficient to enable the reconstruction and examination of the sequence of events and activities surrounding or leading to an operation, procedure, or event in a security-relevant transaction from inception to results.",
"references": [
"NIST SP 800-53 Rev. 4 [Superseded] from CNSSI 4009",
"CNSSI 4009-2015 from NIST SP 800-47",
"CNSSI 4009-2015; CNSSI 4009-2022 from NCSC-TG-004-88",
"NIST SP 800-47 [Superseded]",
"NIST SP 800-37 Rev. 2; NIST SP 800-53 Rev. 5",
"NISTIR 7316",
"NIST CSRC Glossary"
],
"url": "https://mlchart.com/terminology/cybersecurity/audit-trail/"
}
Record 310 of 4,669 in Cybersecurity terminology (MLC-0102). Request the full dataset.