Skip to main content
MuonPartners
Services
Architecture

Solution design and technology roadmapping

Solution AssessmentTechnology RoadmapsIntegration DesignSolution ArchitectureTechnical Design
Cyber Security

Security assessments, IAM, and compliance

AssessmentsIAMComplianceSecurity BaselineCyber Innovation
Network and Platform

Network architecture and cloud platforms

Network DesignCloud StrategyModernisation
Enterprise Architecture

Business-technology alignment

Business AlignmentPortfolio AnalysisGovernance
View all services
ProjectsCase StudiesInsightsToolsAbout
Contact Us

Services

Architecture
Solution AssessmentTechnology RoadmapsIntegration DesignSolution ArchitectureTechnical Design
Cyber Security
AssessmentsIAMComplianceSecurity BaselineCyber Innovation
Network and Platform
Network DesignCloud StrategyModernisation
Enterprise Architecture
Business AlignmentPortfolio AnalysisGovernance
ProjectsCase StudiesInsightsToolsAboutContact
Get in Touch
MuonPartners

Strategic technology consulting for Australian organisations navigating complexity.

Services

  • Architecture
  • Cyber Security
  • Network and Platform
  • Enterprise Architecture

Company

  • About
  • Products
  • Frameworks
  • Cross-Framework Mapping
  • Projects
  • Case Studies
  • Insights
  • Contact

Contact

  • [email protected]
  • Australia
  • LinkedIn

© 2026 Muon Partners. All rights reserved.

ABN 50 669 022 315 · A Muon Group company.

Privacy PolicyTerms of Service
  1. Frameworks
  2. >AESCSF
  3. >SITUATION
  4. >Perform Logging
  5. >AESCSF-SITUATION-1e
AESCSF-SITUATION-1eActive

Log data are being aggregated within the function

Statement

Log data are being aggregated within the function

Context and Guidance: Collect log data from different assets and aggregate it in a central repository. Aggregation may be performed within the function or elsewhere in the enterprise depending on several considerations such as enterprise architecture and regulatory requirements. The repository may be a simple log server, or log management infrastructure that includes centralised log servers and log data storage, or a vendor-supported security information and event management (SIEM) system. Doing so makes log data available even when individual assets are offline or destroyed. Aggregation can be especially beneficial for gathering information from operations technology assets with a limited ability to log locally. Additionally, by aggregating log data from various assets, the organisation can correlate data to identify patterns and anomalies.

Location

Domain
SITUATION
Objective
Perform Logging

Practice Details

Identifier
AESCSF-SITUATION-1e
Type
Practice
Domain
SITUATION
Objective
Perform Logging

Maturity Level

MIL-1MIL-2MIL-3

Security Profile

SP-1SP-2SP-3
ISM
ISM-1405relatedvia aescsf-reference
C2M2
C2M2-SITUATION-1Eequivalentvia derived-shared-practice-structure
ISO 27001
ISO27001-8.15relatedvia aescsf-reference
ISO27001-8.17relatedvia aescsf-reference
ISO27001-8.34relatedvia aescsf-reference
View in graphReport an issue
← Back to Perform Logging
Perform Logging6 controls
AESCSF-SITUATION-1aLogging is occurring for assets that are important to the delivery of the function, at least in an ad hoc mannerAESCSF-SITUATION-1bLogging is occurring for assets within the function that may be leveraged to achieve a threat objective, wherever fea...AESCSF-SITUATION-1cLogging requirements are established and maintained for IT and OT assets that are important to the delivery of the fu...AESCSF-SITUATION-1dLogging requirements are established and maintained for network and host monitoring infrastructure (for example, web ...AESCSF-SITUATION-1eLog data are being aggregated within the functionAESCSF-SITUATION-1fMore rigorous logging is performed for higher priority assets