Your comments

This seems essential to being compliant with almost every standard.  PCI-DSS, NIST, HIPAA, etc. all require this feature.