BC Advantage - 2010 Issue 1
Security at Your Fingertips Part 4 of 5
Subscribe or sign in to view the full article.
Article Overview
This article explains how Windows event logging can be used to monitor security-related activity and support troubleshooting. It is aimed at IT staff, administrators, and other technical readers who need a general overview of auditing options, event review, and centralized reporting tools across Windows environments.
Why This Topic Matters
Understanding event auditing and log review helps organizations maintain visibility into user activity, system changes, and potential security issues across their Windows systems.
Article Sections
-
Using The Windows Event Viewer to Track Events
Introduces the Windows Event Viewer and describes its role in reviewing event history across Windows systems. The section frames event logging as a tool for security monitoring and troubleshooting.
-
Audit Categories and What They Cover
Summarizes several Windows audit categories that can be enabled through policy settings. The discussion focuses on broad types of tracked activity across accounts, access, system changes, and process activity.
-
Centralizing Events and Reviewing Activity Patterns
Discusses the challenge of collecting events from multiple computers and mentions third-party reporting tools. It also outlines general patterns administrators may watch for when reviewing audit data.
What You Will Learn
- How Windows event logging supports security monitoring
- Which broad audit categories are available for tracking activity
- Why centralized event reporting can be useful in larger environments
- What types of event patterns administrators may review during auditing
Who Should Read This
- IT administrators
- Technical support staff
- Security-conscious system owners
- Network auditors
Subscribe or sign in to view the full article.


Quick, Current, Complete - www.findacode.com