The TSA Cyber Directives compliance extension in Log360 helps organizations meet the TSA Security Directives for Pipeline and Surface Transportation Cybersecurity, US directives requiring pipeline and rail operators to implement cyber risk management programs and report incidents within 24 hours by providing centralized log management, continuous threat monitoring, and incident detection capabilities. The platform supports TSA Cyber Directives requirements for governance, incident reporting, network segmentation, access control, vulnerability management, threat detection, incident response, and supply chain risk.
For Cybersecurity Program and Governance, Log360 tracks AD user auditing, GPO and policy changes, group management, and OU structure to evidence governance. To address Incident Reporting and CISA Coordination, the platform provides threat detection from FireEye, Trend Micro, McAfee, Windows threat reports, and network attack logs. The extension also supports Network Segmentation and IT/OT Isolation by providing capabilities that audits network device logon, account management, policy changes, attack reports, and firewall security configurations.