Skip to main content

πŸ’Ό AC-6 LEAST PRIVILEGE

  • Contextual name: πŸ’Ό AC-6 LEAST PRIVILEGE
  • ID: /frameworks/nist-sp-800-53-r4/ac/06
  • Located in: πŸ’Ό AC ACCESS CONTROL

Description​

The organization employs the principle of least privilege, allowing only authorized accesses for users (or processes acting on behalf of users) which are necessary to accomplish assigned tasks in accordance with organizational missions and business functions.

Similar​

  • Internal
    • ID: dec-c-60a60b03

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό NIST CSF v1.1 β†’ πŸ’Ό PR.AC-4: Access permissions and authorizations are managed, incorporating the principles of least privilege and separation of duties1735
πŸ’Ό NIST CSF v1.1 β†’ πŸ’Ό PR.DS-5: Protections against data leaks are implemented4351

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό AC-6 (1) AUTHORIZE ACCESS TO SECURITY FUNCTIONS
πŸ’Ό AC-6 (2) NON-PRIVILEGED ACCESS FOR NONSECURITY FUNCTIONS
πŸ’Ό AC-6 (3) NETWORK ACCESS TO PRIVILEGED COMMANDS
πŸ’Ό AC-6 (4) SEPARATE PROCESSING DOMAINS
πŸ’Ό AC-6 (5) PRIVILEGED ACCOUNTS
πŸ’Ό AC-6 (6) PRIVILEGED ACCESS BY NON-ORGANIZATIONAL USERS
πŸ’Ό AC-6 (7) REVIEW OF USER PRIVILEGES
πŸ’Ό AC-6 (8) PRIVILEGE LEVELS FOR CODE EXECUTION
πŸ’Ό AC-6 (9) AUDITING USE OF PRIVILEGED FUNCTIONS
πŸ’Ό AC-6 (10) PROHIBIT NON-PRIVILEGED USERS FROM EXECUTING PRIVILEGED FUNCTIONS11

Policies (1)​

PolicyLogic CountFlags
πŸ“ AWS IAM User has inline or directly attached policies 🟒1🟠 x1, 🟒 x5

Internal Rules​

RulePoliciesFlags
βœ‰οΈ dec-x-4157c58a1