This objective requires you to examine actual audit logs to confirm that your systems are generating the correct events, as defined by your organization’s audit logging requirements—especially on systems that handle Controlled Unclassified Information (CUI).