πΌ A.9.2.4 Management of secret authentication information of users
- Contextual name: πΌ A.9.2.4 Management of secret authentication information of users
- ID:
/frameworks/iso-iec-27001-2013/09/02/04
- Located in: πΌ A.9.2 User access management
Descriptionβ
The allocation of secret authentication information shall be controlled through a formal management process.
Similarβ
Similar Sections (Give Policies To)β
Section | Sub Sections | Internal Rules | Policies | Flags |
---|
πΌ NIST CSF v1.1 β πΌ PR.AC-1: Identities and credentials are issued, managed, verified, revoked, and audited for authorized devices, users and processes | | 19 | 22 | |
πΌ NIST CSF v1.1 β πΌ PR.AC-7: Users, devices, and other assets are authenticated (e.g., single-factor, multi-factor) commensurate with the risk of the transaction (e.g., individuals' security and privacy risks and other organizational risks) | | 19 | 22 | |
Sub Sectionsβ
Section | Sub Sections | Internal Rules | Policies | Flags |
---|
Policies (10)β
Internal Rulesβ
Rule | Policies | Flags |
---|
βοΈ dec-x-0be4dfe5 | 1 | |
βοΈ dec-x-0feec790 | 2 | |
βοΈ dec-x-4d6fee7a | 1 | |
βοΈ dec-x-12a85339 | 1 | |
βοΈ dec-x-82ca4127 | 2 | |
βοΈ dec-x-30795016 | 1 | |
βοΈ dec-x-b10e98af | 1 | |
βοΈ dec-x-bcb0c78f | 1 | |