---
name: framework-financial-services-controls-au-4
title: AU-4 - Audit Log Storage Capacity
description: 'Allocate audit log storage capacity to accommodate _[Assignment: organization-defined audit log retention requirements]_.'
last-updated: 2025-02-26
---

> ## Documentation Index
> The table of contents for this documentation set is at https://cloud.ibm.com/docs/framework-financial-services-controls?format=markdown
> The index for all IBM Cloud docs is at: https://cloud.ibm.com/docs/llms.txt
> Use these files to discover more information as needed.

# AU-4 - Audit Log Storage Capacity
{: #au-4}

## Control requirements
{: #control-requirements}



### AU-4 - 0


Allocate audit log storage capacity to accommodate _[Assignment: organization-defined audit log retention requirements]_.









## Implementation guidance
{: #implementation-guidance}

See the resources that follow to learn more about how to implement this control.


- [Audit logging of IBM Cloud events](https://cloud.ibm.com/docs/framework-financial-services?topic=framework-financial-services-shared-logging-audit&format=markdown)


- [Audit logging of application provider events and SIEM](https://cloud.ibm.com/docs/framework-financial-services?topic=framework-financial-services-shared-logging-audit-provider&format=markdown)


- [IBM Cloud account setup](https://cloud.ibm.com/docs/framework-financial-services?topic=framework-financial-services-shared-account-setup&format=markdown)






## NIST supplemental guidance
{: #nist-supplemental-guidance}

Organizations consider the types of audit logging to be performed and the audit log processing requirements when allocating audit log storage capacity. Allocating sufficient audit log storage capacity reduces the likelihood of such capacity being exceeded and resulting in the potential loss or reduction of audit logging capability.