DEMO
You’re viewing AuditPilot with seeded data for Cedar Creek Family Medicine. Add Clerk + Neon environment variables to enable real multi-tenant data.
All controls

Monitoring & Audit Logging · AP-ML-001

Audit logs retained for at least 6 years

Sign-in logs, EHR access logs, and security event logs are retained for the HIPAA-required 6-year minimum.

PassingHigh
Remediation guidance

Enable Microsoft 365 audit log retention add-on or stream logs to a SIEM with long-term storage.

Status
Last checked6 hours ago
Next check dueApr 25, 2026
Weight12
Severityhigh
Framework requirements satisfied
HIPAA
§164.316(b)(2)

Time Limit

SOC 2
CC7.2

Logging

HITRUST
09.aa

Audit Logging

Linked evidence (0)
Add evidence
No evidence yet. Upload a screenshot, report, or signed document to mark this control as proven.