Build a common architecture to address multiple regulatory requirements:
Authentication
Authorization
Audit
Infrastructure
Password management.
Automatic access termination.
Login ID reconciliation; Periodic review of user rights.
Firewalls, virus scanners, etc.