tail -f /opt/nessus/var/nessus/logs/nessusd.messages | grep -w "user 3noled : launching"

which 3noled is user running security audit on nessus