From the course: CompTIA Security+ (SY0-601) Cert Prep: 4 Identity and Access Management Design and Implementation

Unlock the full course today

Join today to access over 22,800 courses taught by industry experts or purchase this course individually.

Understanding account and privilege management

Understanding account and privilege management

From the course: CompTIA Security+ (SY0-601) Cert Prep: 4 Identity and Access Management Design and Implementation

Start my 1-month free trial

Understanding account and privilege management

- [Instructor] Account management is one of the fundamental responsibilities of information security professionals. This includes designing strong processes that implement the principles of least privilege and separation of duties, implementing job rotation schemes, and managing the overall account life cycle. The principle of least privilege states that an individual should only have the minimum necessary permissions required to perform their job function. The separation of duties principle states that performing sensitive actions should require the collaboration of two individuals. Account managers issuing permissions should ensure that the permissions they grant users are consistent with these principles. I discussed both of these principles earlier in this course. Many organizations also implement job rotation schemes designed to move people around from job to job on a periodic basis. This has obvious personnel…

Contents