KSI-MLA-ALA - Monitoring, Logging, and Auditing
Authorizing Log Access
Official statement
A least-privileged, role and attribute-based, and just-in-time access authorization model is used and persistently reviewed for access to log data based on organizationally defined data sensitivity.
Official class marker: C.
Related SP 800-53 controls (official citation)
- SI-11
Other Monitoring, Logging, and Auditing indicators
- KSI-MLA-EVC - Evaluating Configurations
- KSI-MLA-LET - Logging Event Types
- KSI-MLA-OSM - Operating SIEM Capability
- KSI-MLA-RVL - Reviewing Logs
Source: https://fedramp.gov/2026/reference/20x/c/key-security-indicators/. Pinned 2026-09-27 (catalog fedramp-20x-ksi/official-1.0.0-cr26). This page shows the list as pinned on that date. A weekly automated check flags any difference from the official page.