|
control enhancementSI-3(8)

Detect Unauthorized Commands (SI-3(8))

Detect the following unauthorized operating system commands through the kernel application programming interface on [organization-defined]: [organization-defined] ; and [organization-defined].

integritymalwareflaw-remediationmonitoringenhancement

Why These Connect

Enhances1

These enhancements add specific capabilities or refinements to the base control.

Organization-Defined Parameters(3)

Assignmentorganization-defined unauthorized operating system commands
Assignmentorganization-defined system hardware components
SelectionSelection (one-or-more): issue a warning / audit the command execution / prevent the execution of the command