Ongoing, real-time observation of systems and networks to detect security threats and compliance issues.
Continuous monitoring is the practice of constantly observing IT systems, networks, and security controls to identify threats, vulnerabilities, and policy violations in real time. Rather than periodic assessments, continuous monitoring provides ongoing visibility through automated tools—SIEM, EDR, vulnerability scanners, and configuration monitors. This approach enables faster detection of security incidents, identifies configuration drift from security baselines, and provides evidence of ongoing compliance. Continuous monitoring is a core requirement of frameworks like NIST and is essential for maintaining ISO 27001 certification.
Why It Matters
The DSC Perspective:
Point-in-time security assessments miss what happens between audits. Continuous monitoring ensures you know about threats and compliance gaps as they occur, not months later. Required or strongly recommended by most compliance frameworks.
