CCI-000796
CCI-000796 Definition
Prohibit the use of system account identifiers that are the same as public identifiers for individual accounts.
| Status | |
| Type | CheckType.policy |
Master Assessment Datasheet
Implementation Guidance
Determine if the use of system account identifiers that are the same as public identifiers is prohibited for individual accounts.
Validation Procedures
Examine: [SELECT FROM: Identification and authentication policy; system security plan; procedures addressing identifier management; procedures addressing account management; system design documentation; system configuration settings and associated documentation; system audit records; other relevant documents or records]. Interview: [SELECT FROM: Organizational personnel with identifier management responsibilities; organizational personnel with information security responsibilities; system/network administrators]. Test: [SELECT FROM: Mechanisms supporting and/or implementing identifier management].