# AU-13 Monitoring for Information Disclosure

NIST SP 800-53 control. Family: AU Audit and Accountability. Function: detective. In no baseline. Mapping licence: CC BY-SA 4.0.

Statement: a. Monitor [Assignment: organization-defined open-source information and/or information sites] [Assignment: organization-defined frequency] for evidence of unauthorized disclosure of organizational information; and b. If an information disclosure is discovered: 1. Notify [Assignment: organization-defined personnel or roles]; and 2. Take the following additional actions: [Assignment: organization-defined additional actions].
Guidance: Unauthorized disclosure of information is a form of data leakage. Open-source information includes social networking sites and code-sharing platforms and repositories. Examples of organizational information include personally identifiable information retained by the organization or proprietary information generated by the organization.

## Enhancements (3)
- AU-13(01) Use of Automated Tools
- AU-13(02) Review of Monitored Sites
- AU-13(03) Unauthorized Replication of Information
Each enhancement's statement: /api/v1/controls/AU-13?fields=enhancements

## Clauses by framework (22 frameworks)
- iso_27001_2022: 7.5, A.8.12, A.8.16. OSA's own, not in NIST's crosswalk: 7.5
- nist_csf_2: DE.CM-03, PR.DS-10
- rbi_csf: Annex1.16
- mlps_2: 8.1.5.2
- nca_ecc: 2-12
- qatar_nia: OS
- bom_ctrm: 4.2
- cbe_csf: CD-1
- cbn_csf: Part9
- bot_cyber: Ch3.1
- cpmi_pfmi: CG.DE, CG.SA
- eba_ict: 3.4.5
- ecb_croe: CROE.2.4, CROE.2.7.1
- ffiec_is: II.D, III.B
- hipaa_sr: §164.308(a)(1)(ii)(D)
- iosco_cyber: DET-1
- nydfs_500: 500.14
- sebi_cscrf: DE.CM
- cmmc_2: AU
- cbest: CBEST.5
- common_criteria: CC Part 2 — FAU
- lloyds_ms: MS8.12
OSA's mapping for iso_27001_2022 and nist_csf_2 takes NIST's published crosswalk as its base. A clause not marked as OSA's own is in that crosswalk.

## More
- This control as JSON, with guidance and ATT&CK techniques: /api/v1/controls/AU-13
- Clauses only: /api/v1/controls/AU-13?fields=mappings
- Page for people: /controls/au-13/
- Found an error? Open an issue at https://github.com/opensecurityarchitecture/osa-data/issues with the id, what OSA says and what the source says.
