AU-9(5) - Protection of Audit Information | Dual Authorization

Enforce dual authorization for [Selection (one or more): movement; deletion] of [Assignment: organization-defined audit information].


ID: AU-9(5)
Enhancement of : AU-9

Space Segment Guidance

Access control for audit data should reflect least privilege and separation of duties. Consider distinct roles for viewing, exporting, and administering logs; heightened protections for sensitive categories (e.g., crypto operations); and break-glass pathways with enhanced auditing for time-critical situations. Ground enclaves that handle TT&C logs may warrant tighter controls than general science or planning environments.