4.4 Given a scenario, differentiate common account management practices. Flashcards
Guest Account
only should use them on a kiosk
Service account
an account for some equipment like HVAC typically admin
Least Privilege
giving the least amount of rights to do your job.
onboarding
bring a new person or equipment into the organization
offboarding
a person or equipment leaving your organization.
Permission auditing or review
twice a year review of accounts and permissions to verify accounts still have the appropriate permissions. used to combat privilege creep.
Usage Auditing and Review
audit what the account is doing.
designed to ensure that the account is being used in accordance with company security policies and being used for legitimate, work-related purposes.
TIme of Day restrictions
Limits when a user can log into their accounts and access resources based on the time of day,
Standard Naming Convention
A format for naming users accounts or equipment names
Account Maintenance
Making sure all employees have the appropriate rights and permissions
Group-Based Access Control
access control using groups that the users are placed into to allow or restrict permissions.
Credential Management
A Service or software designed to store, manage and track user credentials.
Group Policy
provides the centralized management and configuration of operating systems, applications, and users’ settings in an Active Directory environment.
Password Complexity
Refers to requiring the following in a password; – Password Length – Upper case letters – Lower case letters – Numbers – Special characters such as !@#$% etc
Expiration
Refers to the maximum age of a password or account