17.4 Track and Monitor Data Access – Requirement 10

Select Reports > Portal > Repository > Standard Content > PCI > PCI Reports > Requirement 10:Track and Monitor Data Access.

To detect and prevent data breaches, you should track changes to user accounts and groups. Malicious users might create groups or accounts to grant them access to sensitive data, then delete their changes to hide their activity.

Account Creation

Reports all user accounts created. The table provides results by IP address and name of the originating system, as well as the name of the new account.

Account Deletion

Reports all user accounts that have been deleted. The table provides results by name of the account that made the change, IP address and name of the host system, and name of the deleted account.

Account Modification

Reports all user accounts that have been modified. The table provides results by the type of modification, name of the changed account, the account that made the change, and the IP address and name of the host system.

User Group Creation

Reports all user groups created. The table provides results by the event, the new user group, and new account name.

User Group Deletion

Reports all user groups deleted. The table provides results by the event, the new user group, and new account name.