Audit and Compliance

Review of authentication, identity management, and authorization processes. Entitlements review and attestation processes and tools. Compliance regulations governing collection, use, and disclosure of identity information. Tools for establishing accountability based on identity information. Generation of audit and log events containing appropriate identity information. Policy for generation of audit events. Management of lifecycle of audit events. Generation of alerts and alarms. Realtime management of security- and compliance-related events. Tools for capture, archiving, analysis, and correlation of events. Tools for generation of reports, alerts, and alarms based on audit events. Privacy considerations related to identification of individuals through audit records. Forensic investigation of incidents.

  • Audit
  • Compliance
  • Regulation
  • GRC
  • Governance
  • Risk
  • Certification
  • Attestation

This topic relates to the Identity and Privacy coverage area - Identity Infrastructure Planning and building general-purpose infrastructure for managing and applying identity information, and supporting the digital identity lifecycle.

Get access to free Burton Group research reports, podcasts, blogs and more. Click here.



Back to Research Home

© 2008 Burton Group. All rights reserved