Skip to content

What is LT Auditor ᴹᴾ?

LT Auditor MP is an enterprise-grade audit logging and compliance monitoring platform developed by Blue Lance. It provides centralized collection, filtering, reporting, and compliance management for audit log data across your entire environment — spanning Windows, Linux, cloud, and OpenText infrastructure.

LT Auditor MP is built around a modular architecture. The core platform provides the central engine for receiving, processing, storing, and presenting audit data. Purpose-built modules extend that coverage into specific parts of your environment, each collecting activity data and forwarding it to the central platform for unified visibility.


Core platform modules:

The LT Auditor MP web interface is organized into the following functional modules:

Module Purpose
Define Set up audit environments and log categories — the foundation for all audit logging in the system
Configure Set up receivers and transformation rules that process incoming audit logs from connected modules
Manage Create and manage audit filters that determine which events are retained, alerted on, or discarded
Reports Create, schedule, and manage custom reports based on collected audit log data
View Real-time and historical access to audit log data with advanced search, filtering, and export
Comply Define compliance frameworks, monitor compliance status, and generate compliance reports
Admin Manage users, roles, system settings, and collector configuration

Data collection modules:

LT Auditor MP extends its collection capabilities through installable modules, each targeting a specific data source. Modules are installed separately on the relevant servers or systems and forward data back to the LT Auditor MP server for processing.

Module Purpose
EventLogCentral Collects Windows Event Logs and NTFS file activity
PowerShell Orchestrator Executes PowerShell scripts and forwards results for Active Directory and Entra ID assessment
PII Scanner Scans Windows and Linux systems for sensitive data
Azure Log Connector Collects Azure sign-in logs, Entra ID audit events, SharePoint Online, and OneDrive activity
NSS Module Collects NSS file activity from OpenText OES servers

Key capabilities include:

  • Centralized audit log collection from Windows, Linux, cloud, and OpenText environments
  • Real-time event filtering, alerting, and tagging through configurable audit filters
  • Custom and scheduled reporting with email delivery in CSV, Excel, and PDF formats
  • Compliance framework management and monitoring for HIPAA, GDPR, NIS 2, NIST 171, ISO 27001, DORA, FFIEC, FDIC, and PCI-DSS
  • Role-based access control ensuring users only access features relevant to their responsibilities
  • Interactive dashboards and live log views with full-text search and advanced filtering
  • Deployment on Windows Server, Linux (SLES, Ubuntu, Debian), or Docker

Common use cases:

  • Monitoring user and file activity across Windows and Linux environments
  • Detecting suspicious or unauthorized activity in real time
  • Auditing identity and access changes across Active Directory and Microsoft Entra ID
  • Discovering sensitive data across file systems with PII Scanner
  • Producing audit-ready compliance reports for regulatory frameworks
  • Centralizing security event data from across a mixed on-premises and cloud environment

[Your administrator should confirm which modules are deployed in your environment and which compliance frameworks are configured for your organization.]