Logging data from critical assets is only stored on the asset and not centralised
Context and Guidance: Logging data that is collected from your assets (such as networks, systems, and applications) can serve as a key source of information to support the early detection of a cybersecurity threat.
As a result, if logging data is only stored locally, this may limit your ability to perform comprehensive monitoring and proactively identify cybersecurity threats.