Check: WN08-00-000014
Windows 8/8.1 STIG:
WN08-00-000014
(in versions v1 r23 through v1 r16)
Title
Policy must require that system administrators (SAs) be trained for the operating systems used by systems under their control. (Cat II impact)
Discussion
If system administrators (SAs) are assigned to systems running operating systems for which they have no training, these systems are at additional risk of unintentional misconfiguration that may result in vulnerabilities or decreased availability of the system.
Check Content
Review the list of SAs assigned to each system and compare this information to SA training records. If SAs are assigned to systems running operating systems for which there is no record of training, this is a finding.
Fix Text
Establish site policy that requires SAs be trained for all operating systems running on systems under their control.
Additional Identifiers
Rule ID: SV-48283r2_rule
Vulnerability ID: V-36666
Group Title: WIN00-000014
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000366 |
Implement the security configuration settings. |
Controls
Number | Title |
---|---|
CM-6 |
Configuration Settings |