πΌ AC-5 SEPARATION OF DUTIES
- Contextual name: πΌ AC-5 SEPARATION OF DUTIES
- ID:
/frameworks/nist-sp-800-53-r4/ac/05
- Located in: πΌ AC ACCESS CONTROL
Descriptionβ
The organization: AC-5a. Separates [Assignment: organization-defined duties of individuals]; AC-5b. Documents separation of duties of individuals; and AC-5c. Defines information system access authorizations to support separation of duties.
Similarβ
- Internal
- ID:
dec-c-659cb88b
- ID:
Similar Sections (Give Policies To)β
Section | Sub Sections | Internal Rules | Policies | Flags |
---|---|---|---|---|
πΌ NIST CSF v1.1 β πΌ PR.AC-4: Access permissions and authorizations are managed, incorporating the principles of least privilege and separation of duties | 17 | 35 | ||
πΌ NIST CSF v1.1 β πΌ PR.DS-5: Protections against data leaks are implemented | 43 | 51 |
Sub Sectionsβ
Section | Sub Sections | Internal Rules | Policies | Flags |
---|
Policies (3)β
Policy | Logic Count | Flags |
---|---|---|
π AWS Account Root User credentials were used is the last 30 days π΄π’ | 1 | π΄ x1, π’ x6 |
π AWS IAM Policy allows full administrative privileges π’ | 1 | π’ x6 |
π AWS IAM User has inline or directly attached policies π’ | 1 | π x1, π’ x5 |
Internal Rulesβ
Rule | Policies | Flags |
---|---|---|
βοΈ dec-x-157aa4b9 | 1 | |
βοΈ dec-x-4157c58a | 1 | |
βοΈ dec-x-e58fd8e0 | 1 |