ASUME

Trust Center

Continuous Monitoring

Logging and review practices used to detect operational and security issues. Dedicated DLP, FIM, IDS/IPS, and SIEM programmes are still being formalised.

Logging and monitoring

ASUME logs and reviews production systems so that operational and security issues can be detected. Current logging, monitoring, and vulnerability-review practices are described in Security Measures.

A company-wide real-time monitoring programme covering every internal system is still being formalized and is not independently verified.

Security information and event management

ASUME is building a SIEM capability so that logs, events, and (later) threat intelligence can be reviewed together. Current production logging is described in Security Measures.

A dedicated SIEM platform, dedicated analysts, and continuously updated detection rules are not yet in place and are not independently verified.

Reviews and updates

ASUME reviews and updates published security, privacy, and operational documents when the Service, the law, or a significant threat changes.

A formal annual review calendar that covers every internal policy is still being defined and is not independently verified. Until it is published, treat the documents in the Trust Center as the current versions.

File integrity monitoring

File integrity monitoring (FIM) for critical configuration files and templates is a roadmap item.

Listing FIM here is not a representation that unauthorized-change alerting is deployed today.

Intrusion detection system

A dedicated intrusion detection system (IDS) that continuously analyzes network and system activity is a roadmap item.

Until it is in place, detection follows the logging and review practices in Security Measures.

Intrusion prevention system

An active intrusion prevention system (IPS) that inspects and blocks malicious traffic is a roadmap item.

Listing IPS here is not a representation that one is deployed today.

Data loss prevention

A dedicated data-loss-prevention (DLP) programme that scans outgoing documents and communications is a roadmap item.

ASUME has not published a Google DLP (or equivalent) control. Listing DLP here is not a current claim.