Addressable: Procedures for monitoring log-in attempts and reporting discrepancies |
By knowing who logs in on which endpoint at any point in time, entities can have full understanding of ePHI usage, including attempts of unauthorized usage by malicious individuals who are trying to steal ePHI. This Action1 query verifies that appropriate configuration is in place to monitor all login attempts to managed endpoints and flags endpoints that are not configured to properly log invalid login attempts.
Sign-up for Action1 Free Edition to receive real-time alerts and view instant data from your endpoints, such as alert on 164.308 (a)(5)(ii)(C) Security Awareness and Training: Log-in Monitoring created, deleted or modified or run live or scheduled queries with the ability to export to CSV or Excel. Action1 Endpoint Security Platform is entirely SaaS, with online web interface (no management tools to install) and it has zero cost for basic functionality. Running in the Cloud, Action1 discovers all of your endpoints in seconds and you can query your entire network in plain English.
Endpoint configuration management in the Cloud
Manage endpoint configuration using plain English from the Cloud. Such as type 'Windows services' or 'reboot computer'.
Get results instantly from live systems and run automated actions.
Related Alerts and Reports:
164.308 (a)(1)(ii)(A) Security Management: Risk Analysis
Required: Assessment of risks and vulnerabilities of ePHI
164.308 (a)(1)(ii)(D) Security Management: Information System Activity Review
Required: Regular reviews of audit logs and other tracking information
164.308 (a)(3)(ii)(C) Workforce Security: Termination Procedures
Addressable: Making sure that proper employee termination procedures are followed
164.308 (a)(4)(ii)(B) Information Access Management: Access Authorization
Addressable: Verifying that access granting policies and procedures are in place
164.308 (a)(4)(ii)(C): Information Access Management: Access Establishment and Modification
Addressable: Granting and changing access to workstation and other components
164.308 (a)(5)(ii)(B) Security Awareness and Training: Protection from Malicious Software
Addressable: Procedures for guarding against, detecting, and reporting malicious software
164.308 (a)(5)(ii)(D) Security Awareness and Training: Password Management
Addressable: Procedures for creating, changing, and safeguarding passwords
Find more information on 164.308 (a)(5)(ii)(C) Security Awareness and Training: Log-in Monitoring at Microsoft TechNet.