前往小程序,Get更优阅读体验!
立即前往
首页
学习
活动
专区
工具
TVP
发布
社区首页 >专栏 >CISSP考试指南笔记:6.3 审计管理控制

CISSP考试指南笔记:6.3 审计管理控制

作者头像
血狼debugeeker
发布2021-03-23 11:07:42
3700
发布2021-03-23 11:07:42
举报
文章被收录于专栏:debugeeker的专栏debugeeker的专栏

Account Management


A preferred technique of attackers is to become “normal” privileged users of the systems they compromise as soon as possible. They can accomplish this in at least three ways: compromise an existing privileged account, create a new privileged account, or elevate the privileges of a regular user account.

Adding Accounts

First, all new users should be required to read through and acknowledge they understand (typically by signing) all policies that apply to them. At a minimum, every organization should have (and every user should sign) an acceptable use policy (AUP) that specifies what the organization considers acceptable use of the information systems that are made available to the employee.

Testing that all employees are aware of the AUP and other applicable policies can be the first step in auditing user accounts.

Modifying Accounts

Organizations that are mature in their security processes will have a change control process in place to address user privileges. While many auditors will focus on who has administrative privileges in the organization, there are many custom sets of permissions that approach the level of an admin account. It is important, then, to have and test processes by which elevated privileges are issued.

Suspending Accounts

Another important practice in account management is to suspend accounts that are no longer needed.

Backup Verification

Whatever the approach to backing up our organizational data, we need to periodically test it to ensure that the backups will work as promised when we need them.

本文参与 腾讯云自媒体分享计划,分享自作者个人站点/博客。
原始发表:2021-03-06 ,如有侵权请联系 cloudcommunity@tencent.com 删除

本文分享自 作者个人站点/博客 前往查看

如有侵权,请联系 cloudcommunity@tencent.com 删除。

本文参与 腾讯云自媒体分享计划  ,欢迎热爱写作的你一起参与!

评论
登录后参与评论
0 条评论
热度
最新
推荐阅读
目录
  • Account Management
    • Adding Accounts
      • Modifying Accounts
        • Suspending Accounts
        • Backup Verification
        领券
        问题归档专栏文章快讯文章归档关键词归档开发者手册归档开发者手册 Section 归档