Automatic Email Notifications for User Account Actions Hot

by Doug Fish on May 11, 2016

Administrators configure the information system to automatically notify the system administrator and ISSO for account creation/modification/deletion/disable/enable actions.

  • NIST SP 800-53 Revision 4
    Access Control
     
    Procedure:
    The organization conducting the inspection/assessment examines the information system to ensure the organization being inspected/assessed configures the information system to notify the system administrator and ISSO for account creation actions. For information system components that have applicable STIGs or SRGs, the organization conducting the inspection/assessment evaluates the components to ensure that the organization being inspected/assessed has configured the information system in compliance with the applicable STIGs and SRGs pertaining to CCI 1683. DoD has defined the personnel or roles as the system administrator and ISSO.
     
    Implementation Guidance:
    The organization being inspected/assessed configures the information system to notify the system administrator and ISSO for account creation actions. For information system components that have applicable STIGs or SRGs, the organization being inspected/assessed must comply with the STIG/SRG guidance that pertains to CCI 1683. DoD has defined the personnel or roles as the system administrator and ISSO.
     
    CCI #: 001683
    CCI Definition: The information system notifies organization-defined personnel or roles for account creation actions.

    Ideas

    Status
  • Please login to view any attachments.

  • This idea has not received any votes within 24 months of its submission. It has now been closed (declined) due to insufficient support.
    David J. Easter Commented by David J. Easter June 04, 2018
    #1 Reviewer  -  

    This idea has not received any votes within 24 months of its submission. It has now been closed (declined) due to insufficient support.

     

PrintEmail

Recent Tweets