Windows EventInformation
Windows Event ID 4933 – Microsoft-Windows-Security-Auditing: Per-user audit policy table creation
Event ID 4933 fires when Windows creates a per-user audit policy table during system startup or when audit policies are modified. This security auditing event tracks the initialization of user-specific audit settings.