Requirement 164.414 – Administrative Requirements and Burden of Proof
§ 164.414 Administrative requirements and burden of proof
- (a) Administrative requirements. A covered entity is required to comply with the administrative requirements of § 164.530(b), (d), (e), (g), (h), (i), and (j) with respect to the requirements of this subpart.
- (b) Burden of proof. In the event of a use or disclosure in violation of subpart E, the covered entity or business associate, as applicable, shall have the burden of demonstrating that all notifications were made as required by this subpart or that the use or disclosure did not constitute a breach, as defined at § 164.402.
Apart from the wide range of user activity recording tools, Syteca also includes a user messaging feature that allows custom messages to be delivered to users before the start of a session. Such messages may include notifications about monitoring and a set of security policies and restrictions applicable in the current situation. When receiving such a message, users have to explicitly confirm that they have read it to continue with the session.
Moreover, the platform includes a feature for automatically invoking user notification about potentially dangerous actions they are performing. Such notifications also require the user to acknowledge their actions.
The platform itself includes an internal activity log where all actions performed by specialists and administrators of Syteca are recorded.
All session records in the platform can be exported in an independent forensic format for further investigations.
Syteca is a reliable and flexible security solution that will help you meet NERC requirements at minimum cost.
Syteca is a reliable and flexible security solution that will help you meet NERC requirements at minimum cost.