Personnel seeking access to systems and their resources should have a genuine business requirement validated by their manager or another appropriate authority.
In addition, centrally logging and analysing unprivileged access events can assist in monitoring the security posture of systems and their resources, detecting malicious behaviour and contributing to investigations following cyber security incidents.
3 controls