One of our engineers will be working remotely for the next year. We've set him up with a good means to do so, but would like to have the ability to audit his user account's and, if possible, "his" host machine's (in our local network) activity. It's not a "do we trust him" issue (we do). It's just a nod to proper security practice as we have opened up a potential vulnerability.
As a quick back story, our offices' IT services are outsourced (business < 50 emplyees). I handle the fringe systems/networking (product testing lab, shop floor, etc.) which are outside the domain. And by that I mean my job involves a metric ton of non-IT responsibilities. Hence my cry for help

AD is not alien to me by any stretch, but I also don't pretend to be an expert.
Any guidance would be most appreciated.
