Commit 1d8440b1 authored by Santeri Toikka's avatar Santeri Toikka
Browse files

Modified metrics intro

Closes #353
parent 61c1d615
Loading
Loading
Loading
Loading
+3 −1
Original line number Diff line number Diff line
@@ -1032,7 +1032,9 @@ For high risk:

### 5.3.6 Metrics

Reasoning for metrics requirements is often justified by data integrity protection. Faults can not be detected, if an attacker can hide it's existense.
The metrics requirements in this subclause support security monitoring, operational visibility, fault detection, and verification of system behaviour.
Fulfilment of these metrics is essential for all products in all use cases and all risk levels.
Breaches can not be detected, if an attacker can hide it's existense.

These requirements are generally binding, and there is no low-medium-high tiering available.