Skip to content
arrow_back
search
E8-RA-ML2.9 bolt ASD Essential Eight

Event logs are analysed promptly for security events

Quickly check logs from servers open to the internet for security issues.

record_voice_over

Plain language

This control is about keeping an eye on the log files from computers or servers that are open to the internet. It's important because if something suspicious or harmful happens, like someone trying to break into your system, you want to know about it quickly so you can stop it.

Framework

ASD Essential Eight

Control effect

Detective

E8 mitigation strategy

Restrict administrative privileges

Classifications

N/A

Official last update

N/A

Control Stack last updated

19 Mar 2026

E8 maturity levels

ML2

Official control statement

Event logs from internet-facing servers are analysed in a timely manner to detect cyber security events.
bolt ASD Essential Eight E8-RA-ML2.9
priority_high

Why it matters

Neglecting prompt log analysis on internet-facing servers increases the risk of undetected breaches, escalating potential damage and operational disruption.

settings

Operational notes

Enable automated alerting on internet-facing server logs and triage alerts within 24 hours; investigate suspicious entries and document findings and actions taken.

Mapping detail

Mapping

Direction

Controls