CMMC 1.0 Practice SI.2.216 Requirement:
Monitor organizational systems, including inbound and outbound communications traffic, to detect attacks and indicators of potential attacks.
CMMC 1.0 SI.2.216 Requirement Explanation:
Intrusion detection systems are designed to identify common cyber attacks. Many modern firewall appliances come with built in intrusion detection capabilities. There are also open source solutions the most famous being Snort.
Example CMMC 1.0 SI.2.216 Implementation:
Place an intrusion detection system between your local network and the internet. Configure it to detect attacks and potential attacks.
CMMC 1.0 SI.2.216 Scenario(s):
- Scenario 1:
You want to monitor traffic coming in and out of your network for cyber attacks. To accomplish this you setup a Snort intrusion detection systems on a Linux server and route your network traffic so that Snort can monitor it.
Quick & Simple
Discover Our Cybersecurity Compliance Solutions:
Whether you need to meet and maintain your compliance requirements, help your clients meet them, or verify supplier compliance we have the expertise and solution for you