In Windows PIM Endpoint:
There was a service named "Event Log Watch".
However, in Windows PAMSC14.0, there was not the service.
Correct design?
Yes, it is correct design.
PIM : Privileged Identity Manager
PAMSC : Privileged Access Manager Server Control