Best Practices for Access Control Flashcards
Implicit Deny
All access to a resource is denied by default. Access must be explicitly granted.
Explicit Deny
Access is granted by default until explicitly denied.
Jenny
Least Privilege
Users are given lowest level access needed to perform their job function.
Separation of Duties
Sensitive tasks must use more than one person to conduct them.
An admin user can have an admin account as well as a user account. The individual uses the user account for normal activities and only uses the admin account for tasks that require admin privilege. This is considered a type of separation of duty.
Job Rotation
Users are rotated through different jobs to learn more as well as increasing security by helping identify theft, fraud, and abuse of position.