This audit trail needs to include complete visibility into every action performed by staff, especially those with access to customer, financial and investor data. A good system should track every application used, webpage visited, record copied, file saved, print screen generated, and page printed, etc. Only then will the organization truly know whether protected data has been appropriately accessed and used, or if users, whether their intent was malicious or even accidental, properly used that information. The system should also be able to detect external attackers posing as insiders via stolen credentials.
Review the full article on Accounting Today's website.