Skip to content
Menu ▾
Patent pending

Regulayer  /  The 146 laws  /  Security standards

NIST · Cybersecurity Framework 2.0

Logging, monitoring & detection.

Applies to: Any organisation adopting the CSF. Built · voluntary (Feb 2024)

What the signed record shows

Generated log records, identity attribution, monitoring signals, and adverse-event detail.

The proof is a signed, tamper-evident record. Anyone can check it, free, without an account, and nothing has to leave the building to make it. Evidence, not a promise.

Citation: CSF 2.0 PR.PS-04/PR.AA; DE.CM/DE.AE; RS.AN

In the same family

What to do about it

Seven days free, then $349 a month.

A signed record of which AI you used and what you checked, sealed to the exact file you deliver, made on your own machine and checkable free by anyone you send it to.

Start the free weekOr verify a real record, free →

Part of the Regulayer proof catalogue: 146 laws and standards, one sealed engine. This page is a product description, not legal advice.

What the framework sets out, section by section

NIST Cybersecurity Framework (CSF) 2.0, NIST CSWP 29 (published 26 February 2024). Voluntary guidance, not law. The six Functions are GOVERN (GV), IDENTIFY (ID), PROTECT (PR), DETECT (DE), RESPOND (RS), RECOVER (RC). Subcategories this mapper evidences from the per-event signed record:

PR.PS-04
Log records are generated and made available for continuous monitoring.
PR.AA
Identity management, authentication and access control (e.g. PR.AA-01 identities/credentials; PR.AA-05 access permissions).
DE.CM
Continuous monitoring of assets to find anomalies and adverse events.
DE.AE
Adverse event analysis to characterise events and detect incidents.
RS.MA / RS.AN
Incident management and incident analysis.

Taken from the Regulayer entry for this instrument, which is built against the primary text.