Skip to main content
University of Nebraska Omaha logo University of Nebraska Omaha
APPLY MY UNO DIRECTORY

Students Faculty Staff Community
APPLY MY UNO DIRECTORY
Students Faculty Staff Community
  • About
    About UNO
    • Leadership
    • Mission and Strategic Plan
    • Accreditation
    • Our City: Omaha
    • Facts & Figures
    • News
    • Events
    • Organizational Units
    • Campus Safety
    • Buildings and Maps
    Get Started
    • Apply
    • Campus Visit
    • Contact Us
    Front view of UNO's ASH building
    Get Started Today

    Apply Now
  • Academics
    Majors and Programs
    • Undergraduate Programs
    • Master's Programs
    • Doctoral Programs
    • International Programs
    • Online Programs
    • Class Search
    Colleges
    • College of Arts and Sciences
    • College of Business Administration
    • College of Communication, Fine Arts and Media
    • College of Education, Health, and Human Sciences
    • College of Information Science & Technology
    • College of Public Affairs and Community Service
    • Graduate Studies
    Resources
    • Catalogs
    • Academic Calendar
    • Library
    • Advising
    • Academic Affairs
    • Registrar
    • Academic Support
    • Request Transcript
    Top view glance of calendar showing August 2024
    Deadlines Are Approaching

    View year-at-a-glance calendars that include term start and end dates, and school holidays.

    Academic Calendar
  • Cost & Aid Backback to Main menu
    • Undergraduate Tuition
    • Graduate Tuition
    • Financial Support
    • Cost of Attendance
    • Undergraduate Scholarships
    • All Scholarship Information
    • Military and Veterans Benefits
    • Consumer Information
  • Admissions
    Get Started
    • Apply
    • Complete Your FAFSA
    • Schedule a Campus Visit
    • Request Info
    Admitted Students
    • Orientation
    • Enrollment Deposit
    • Transcripts
    • UNO 101
    • New Student & Family Events
    Cost & Aid
    • Undergraduate Tuition
    • Graduate Tuition
    • Financial Aid
    • Cost of Attendance
    • Scholarships
    • Military and Veterans Benefits
    • Consumer Information
    Admissions
    • Undergraduate Admissions
    • Transfer Students
    • Graduate Admissions
    Students walking together on campus for a tour
    Visit UNO's Campus

    Schedule a Tour
  • Student Life
    Campus Life
    • Event Calendar
    • Athletics
    • Campus Dining
    • Student Housing
    • Campus Recreation
    • Milo Bail Student Center
    • Parking and Transportation
    • Campus Safety
    Involvement and Leadership
    • Student Organizations
    • Student Government
    • Career Services and Internships
    • Spirit and Tradition
    • Student Leadership, Involvement, and Inclusion
    Support
    • Academic Support
    • Maverick Advising Center
    • Accessibility
    • Durango's Advancement & Support Hub (DASH)
    • Student Service
    • Student Safety
    Resources
    • Health Services
    • Military-Connected Resources
    • Student Conduct and Community Standards
    • Division of Student Life and Wellbeing
    Students participating in a beading craft activity
    Get Involved on Campus

    See Events Calendar
  • Engagement
    Students
    • Student Service and Leadership Collaborative
    • Find Volunteer Opportunities
    • Maverick Food Pantry
    • Voter Information
    • Internship Opportunities
    • Career Services
    • Student Resources
    • Become an Engaged Scholar
    Faculty and Staff
    • Faculty Senate
    • Center for Faculty Excellence
    • Staff Advisory Council
    • Faculty Resources
    • Engaged Research
    • Service Learning Academy
    • Community-Based Learning Courses
    Community
    • Campus Resources
    • Service Learning Academy
    • Samuel Bak Museum: The Learning Center
    • Promote Volunteer Opportunities
    • Promote Internship Opportunities
    • Rent Office Space
    • Senior Passport Program
    • Community Engagement Partnership Initiative
    Office of Engagement
    • Connect to Campus
    • Barbara Weitz Community Engagement Center
    • Service Learning Academy
    • Rent Office Space
    • Samuel Bak Museum: The Learning Center
    • Partner With Us
    • Senior Passport Program
    • Nebraska Business Development Center
    • Community Partners on Campus
    Student volunteering with a food bank
    Connect with Us

    Contact the Office of Engagement
  • Research
    Student
    • Research and Creative Activity Fair
    • Graduate Research (GRACA)
    • Student Conference Travel Fund
    • Undergraduate Scholarly Experience (FUSE) Fund
    Faculty
    • Grant Databases
    • External Funding
    • Awards and Committees
    • Office of Sponsored Programs
    Research at UNO
    • Office of Research and Creative Activity
    • Research News
    • Centers and Institutes
    Students giving presentations on research projects
    UNO Pushes Innovation Forward

    Read UNO Research News
  • Athletics
    Men's Teams
    • Baseball
    • Basketball
    • Golf
    • Hockey
    • Soccer
    • Swimming & Diving
    • Tennis
    Women's Teams
    • Basketball
    • Cross Country
    • Golf
    • Soccer
    • Softball
    • Swimming & Diving
    • Tennis
    • Track & Field
    • Volleyball
    Game Day Resources
    • Purchase Tickets
    • Team Schedules
    • Buy Maverick Gear
    Baxter Arena
    • Calendar
    • Tickets
    • Directions & Parking
    • Clear Bag Policy
    • Public Skating
    Hockey player walking out on the ice arena
    Cheer on our Mavericks!

    Buy Tickets
  • Alumni Backback to Main menu
    • Alumni
    • Transcripts
    • Thompson Center

Campus Policies

  1. UNO
  2. Campus Policies
  3. Audit Logging and Review

Audit Logging and Review

Policy Contents

  • Scope
  • Policy Statement
  • Reason for Policy
  • Additional Contacts
  • Related Information
  • History
  • Effective: 01-01-2009
  • Last Revised: 08-31-2016
  • Responsible University Administrator: Chief Information Officer
  • Responsible University Office: Information Security
  • Policy Contact: Information Security • security@unomaha.edu
  • Print or view PDF

Scope

This policy applies to all systems and university employees that are subjected to and must adhere to the Payment Card Industry Data Security Standards (PCI-DSS). Other systems and employees are advised to use this document as a best practice.

Policy Statement

Audit Logging and Review
Security auditing must be enabled on all university infrastructure components that support logging. The resulting logs must provide sufficient data to support comprehensive audits of the effectiveness of, and compliance with, policies and standards at the university. Logs must be archived and reviewed for security irregularities.

Audit Settings
Operational staff must maintain a log of significant activities, listed below, on their systems including exceptions to normal processing. The audit logs should be set to record sufficient information for the logs to be reviewed through automated or manual processes. The audit logs should contain the following information as appropriate:

  • Identification of the person or account making the log entry
  • Origination of audit event
  • Date and time of the log entry
  • System errors and operator response
  • All suspicious activity, which might be an indication of unauthorized usage or an attempt to compromise security

Significant Activities
Information systems at the university, provided they support these activities, must have auditing features configured to record security-related events at a minimum. The auditing features must log the following events:

  • Failed authentication
  • Successful authentication
  • Failed access
  • Privileged access usage
  • Failed system shutdown
  • Successful system shutdown
  • Initialization of audit logs
  • Creation/Deletion of system level objects

System administrators must configure auditing features to record audit events to a log file. The log file must be of sufficient size to retain data for at least thirty (30) days before it is copied. The log files must be copied to a secured directory for archival and backup to a centralized system. Access to log files must be restricted to authorized personnel only. A common source of clock time is to be used on systems throughout the organization whenever possible and practical. This aids log reviews in synchronizing and correlating activities that occurred on separate systems.

Log Alerting & Review
Systems deemed critical to mission operations, information security (e.g. firewalls, domain controllers, and critical database servers), and those that are subjected to specific regulatory and/or industry requirements (e.g. PCI or HIPAA) must be configured to provide near real-time alerting of security-related events. These alerting mechanisms may be native to the operating system/application or be provided by third-party software utilities. Alerts may also be reported by users. At a minimum, alerts should be communicated to system administrators via e-mail. Logs are also used in the event of an incident for both investigative and forensic purposes. All potential security violations should be reported as defined in the UNO Information Security Incident Response Policy.

Alerts must be reported and corrective action must be taken. Alerts reported by users regarding problems with information processing or communications systems are to be logged. There are clear rules for handling reported errors including:

  • Review of alerts and problem logs to ensure that errors have been satisfactorily resolved
  • Review of corrective measures to ensure that controls have not been compromised and that the action taken is fully authorized

Audit logs for critical systems are reviewed on a periodic basis to ensure that the proper information is being captured. Where automated mechanisms are not in place to alert of security incidents, manual review of log files occurs on a periodic basis to determine whether any security-related events have occurred. The log reviews are conducted by an employee with a sufficient level on knowledge to determine whether a security related event has occurred.

Log Retention for PCI Systems
Audit logs are to be retained for at least one (1) year. In addition, three (3) months of logs are to be immediately available for analysis, either online or restored from backup.

Reason for Policy

Audit logging and review are essential in ensuring a diligent and proactive information security and systems environment. This policy outlines the requirements for audit logging and review with the intent of identifying user and system activity in order to reduce the risk of unauthorized access/disclosure and availability of university information assets.

Related Information

UNO Digital Security Incident Response Policy

This policy covers the following sections of ISO 27001:

  • 10.10.1 Audit logging

  • 10.10.2 Monitoring system use

  • 10.10.3 Protection of log information

  • 10.10.4 Administrator and operator logs

  • 10.10.5 Fault logging

  • 10.10.6 Clock synchronization

This policy covers the following sections of PCI-DSS 3.2:

  • 10.1 Implement audit trails to link all access to system components to each individual user.

  • 10.2 Implement automated audit trails for all system components to reconstruct events.

  • 10.3 Record at least the following audit trail entries for all system components for each event.

  • 10.4 Using time-synchronization technology, synchronize all critical system clocks.

  • 10.5 Secure audit trails so they cannot be altered.

  • 10.6 Review logs and security events for all system components to identify anomalies or suspicious activity.

  • 10.7 Retain audit trail history for at least 1 year, with a minimum of 3 months immediately available for analysis.

History

This policy is an update to the Audit Logging & Review Policy that was previously updated in 2009.

 

Next Steps

  • Visit UNO
  • Request Information
  • Apply for Admission
  • The UNO Advantage
  • Our City (Omaha)

Just For You

  • Future Students
  • Current Students
  • Work at UNO
  • Faculty and Staff
  • A-Z List

Popular Services and Resources

  • my.unomaha.edu
  • Academic Calendar
  • Campus Buildings & Maps
  • Library
  • Pay Your Bill
  • Course Catalogs
  • Internships & Career Development
  • The Maverick Store
  • MavCARD Services
  • Military-Connected Resource Center
  • Speech Center
  • Writing Center
  • Human Resources
  • Center for Faculty Excellence

Affiliates

  • University of Nebraska System
  • NU Foundation
  • Buffett Early Childhood Institute
  • Daugherty Water for Food Institute
  • National Strategic Research Institute
  • Peter Kiewit Institute
  • Rural Prosperity Nebraska
  1. University Policies
  2. Privacy Statement
  3. Accessibility
  1. 402.554.2800

University of Nebraska Omaha
University of Nebraska Omaha, 6001 Dodge Street, Omaha, NE, 68182
  • ©  
  • Emergency Information Alert
  • MavsReport

Social Media


Omaha Skyline

Our Campus. Otherwise Known as Omaha.

The University of Nebraska does not discriminate based on race, color, ethnicity, national origin, sex, pregnancy, sexual orientation, gender identity, religion, disability, age, genetic information, veteran status, marital status, and/or political affiliation in its education programs or activities, including admissions and employment. The University prohibits any form of retaliation taken against anyone for reporting discrimination, harassment, or retaliation for otherwise engaging in protected activity. Read the full statement.