Skip to main content

πŸ’Ό AC-24 ACCESS CONTROL DECISIONS

  • Contextual name: πŸ’Ό AC-24 ACCESS CONTROL DECISIONS
  • ID: /frameworks/nist-sp-800-53-r4/ac/24
  • Located in: πŸ’Ό AC ACCESS CONTROL

Description​

The organization establishes procedures to ensure [Assignment: organization-defined access control decisions] are applied to each access request prior to access enforcement.

Similar​

  • Internal
    • ID: dec-c-32553a53

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό NIST CSF v1.1 β†’ πŸ’Ό PR.AC-4: Access permissions and authorizations are managed, incorporating the principles of least privilege and separation of duties1735
πŸ’Ό NIST CSF v1.1 β†’ πŸ’Ό PR.AC-6: Identities are proofed and bound to credentials and asserted in interactions48

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό AC-24 (1) TRANSMIT ACCESS AUTHORIZATION INFORMATION
πŸ’Ό AC-24 (2) NO USER OR PROCESS IDENTITY