Documentation
HECVAT-onprem-v3.0.5
Authentication, Authorization, and Accounting
OPAA-06

Question OPAA-06

Are these logs exportable (to SIEM or other contemporary log ingestion systems)?

Weight15
High RiskNo
RequiredYes
Compliant AnswerYes

Standard Guidance

EDUCAUSE provides no guidance here

Answering "NO"

Describe any plans to enable log exportability.

Answering "YES"

Ensure that all elements of OPAA-05 are evaluated for your response. Provide a description of logging capabilities.

Reason for Question

Strong logging capabilities are vital to the proper management of a system. Implementing an immature system that lacks sufficient logging capabilities exposes an institution to great risk. Depending on your risk tolerance and the use case, your institution may or may not be concerned. The focus of this question is system-related logs (e.g., including but not limited to - events, state changes, control modification, etc.).

Follow-Up Inquiries

If a weak response is given to this answer, it is appropriate to ask directed answers to get specific information. Ensure that questions are targeted to ensure responses will come from the appropriate party within the vendor.

HECVAT Pro Advice

[Add expert insights and best practices]

Implementation Tips

[Add practical steps for SME SaaS vendors]

FAQ

[Add common questions related to this HECVAT item]

Resources

[Add links to relevant articles or tools]