What is LT Auditor ᴹᴾ?
LT Auditor MP is an enterprise-grade audit logging and compliance monitoring platform developed by Blue Lance. It provides centralized collection, filtering, reporting, and compliance management for audit log data across your entire environment — spanning Windows, Linux, cloud, and OpenText infrastructure.
LT Auditor MP is built around a modular architecture. The core platform provides the central engine for receiving, processing, storing, and presenting audit data. Purpose-built modules extend that coverage into specific parts of your environment, each collecting activity data and forwarding it to the central platform for unified visibility.
Core platform modules:
The LT Auditor MP web interface is organized into the following functional modules:
| Module | Purpose |
| Define | Set up audit environments and log categories — the foundation for all audit logging in the system |
| Configure | Set up receivers and transformation rules that process incoming audit logs from connected modules |
| Manage | Create and manage audit filters that determine which events are retained, alerted on, or discarded |
| Reports | Create, schedule, and manage custom reports based on collected audit log data |
| View | Real-time and historical access to audit log data with advanced search, filtering, and export |
| Comply | Define compliance frameworks, monitor compliance status, and generate compliance reports |
| Admin | Manage users, roles, system settings, and collector configuration |
Data collection modules:
LT Auditor MP extends its collection capabilities through installable modules, each targeting a specific data source. Modules are installed separately on the relevant servers or systems and forward data back to the LT Auditor MP server for processing.
| Module | Purpose |
| EventLogCentral | Collects Windows Event Logs and NTFS file activity |
| PowerShell Orchestrator | Executes PowerShell scripts and forwards results for Active Directory and Entra ID assessment |
| PII Scanner | Scans Windows and Linux systems for sensitive data |
| Azure Log Connector | Collects Azure sign-in logs, Entra ID audit events, SharePoint Online, and OneDrive activity |
| NSS Module | Collects NSS file activity from OpenText OES servers |
Key capabilities include:
- Centralized audit log collection from Windows, Linux, cloud, and OpenText environments
- Real-time event filtering, alerting, and tagging through configurable audit filters
- Custom and scheduled reporting with email delivery in CSV, Excel, and PDF formats
- Compliance framework management and monitoring for HIPAA, GDPR, NIS 2, NIST 171, ISO 27001, DORA, FFIEC, FDIC, and PCI-DSS
- Role-based access control ensuring users only access features relevant to their responsibilities
- Interactive dashboards and live log views with full-text search and advanced filtering
- Deployment on Windows Server, Linux (SLES, Ubuntu, Debian), or Docker
Common use cases:
- Monitoring user and file activity across Windows and Linux environments
- Detecting suspicious or unauthorized activity in real time
- Auditing identity and access changes across Active Directory and Microsoft Entra ID
- Discovering sensitive data across file systems with PII Scanner
- Producing audit-ready compliance reports for regulatory frameworks
- Centralizing security event data from across a mixed on-premises and cloud environment
[Your administrator should confirm which modules are deployed in your environment and which compliance frameworks are configured for your organization.]