Skip to main content
MuonPartners
Services
Architecture

Solution design and technology roadmapping

Solution AssessmentTechnology RoadmapsIntegration DesignSolution ArchitectureTechnical Design
Cyber Security

Security assessments, IAM, and compliance

AssessmentsIAMComplianceSecurity BaselineCyber Innovation
Network and Platform

Network architecture and cloud platforms

Network DesignCloud StrategyModernisation
Enterprise Architecture

Business-technology alignment

Business AlignmentPortfolio AnalysisGovernance
View all services
ProjectsCase StudiesInsightsToolsAbout
Contact Us

Services

Architecture
Solution AssessmentTechnology RoadmapsIntegration DesignSolution ArchitectureTechnical Design
Cyber Security
AssessmentsIAMComplianceSecurity BaselineCyber Innovation
Network and Platform
Network DesignCloud StrategyModernisation
Enterprise Architecture
Business AlignmentPortfolio AnalysisGovernance
ProjectsCase StudiesInsightsToolsAboutContact
Get in Touch
MuonPartners

Strategic technology consulting for Australian organisations navigating complexity.

Services

  • Architecture
  • Cyber Security
  • Network and Platform
  • Enterprise Architecture

Company

  • About
  • Products
  • Frameworks
  • Cross-Framework Mapping
  • Projects
  • Case Studies
  • Insights
  • Contact

Contact

  • [email protected]
  • Australia
  • LinkedIn

© 2026 Muon Partners. All rights reserved.

ABN 50 669 022 315 · A Muon Group company.

Privacy PolicyTerms of Service
  1. Frameworks
  2. >AESCSF
  3. >SITUATION
  4. >Perform Logging
  5. >AESCSF-SITUATION-1b
AESCSF-SITUATION-1bActive

Logging is occurring for assets within the function that may be leveraged to achieve a threat objective, wherever fea...

Statement

Logging is occurring for assets within the function that may be leveraged to achieve a threat objective, wherever feasible

Context and Guidance: This practice builds on the logging activities identified in SITUATION-1a to include assets that may be used in the pursuit of threat actor objectives. A threat actor may leverage multiple tactics, such as those defined in the MITRE ATT&CK Framework, to achieve their ultimate threat objective (for example, extortion, data manipulation, IP theft, customer data theft, sabotage). Logging may not be feasible for all types of assets within the function. Where logging is not feasible, organisations may consider implementing mitigating controls, such as limiting physical or logical access.

Related Practices • Progression: This practice is part of a practice progression. Practice progressions are groups of related practices that represent increasingly complete or more advanced implementations of an activity. The practices in this progression include: SITUATION-1a, SITUATION-1b, SITUATION-1c, SITUATION-1d, SITUATION-1f.

Location

Domain
SITUATION
Objective
Perform Logging

Practice Details

Identifier
AESCSF-SITUATION-1b
Type
Practice
Domain
SITUATION
Objective
Perform Logging

Maturity Level

MIL-1MIL-2MIL-3

Security Profile

SP-1SP-2SP-3
ISM
ISM-0580relatedvia aescsf-reference
ISM-0585relatedvia aescsf-reference
ISM-1405relatedvia aescsf-reference
C2M2
C2M2-SITUATION-1Bequivalentvia derived-shared-practice-structure
ISO 27001
ISO27001-8.15relatedvia aescsf-reference
View in graphReport an issue
← Back to Perform Logging
Perform Logging6 controls
AESCSF-SITUATION-1aLogging is occurring for assets that are important to the delivery of the function, at least in an ad hoc mannerAESCSF-SITUATION-1bLogging is occurring for assets within the function that may be leveraged to achieve a threat objective, wherever fea...AESCSF-SITUATION-1cLogging requirements are established and maintained for IT and OT assets that are important to the delivery of the fu...AESCSF-SITUATION-1dLogging requirements are established and maintained for network and host monitoring infrastructure (for example, web ...AESCSF-SITUATION-1eLog data are being aggregated within the functionAESCSF-SITUATION-1fMore rigorous logging is performed for higher priority assets