From the course: CompTIA CySA+ (CS0-002) Cert Prep: 3 Identity and Access Management

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Account monitoring

Account monitoring

- [Narrator] Security administrators must pay careful attention to the permissions and use of end user accounts to protect against security incidents. Two major account administration issues face security professionals. The first is inaccurate permissions assigned to accounts that either prevent a user from doing his or her work or violate the principle of least privilege. These permissions are often the result of privilege creep, a condition that occurs when users switch jobs and gain new permissions but never have their old permissions revoked. The second is the unauthorized use of those permissions, either by someone other than the legitimate user accessing the account or by the user performing some illegitimate action. To protect against the first issue, administrators should perform regular user access reviews in cooperation with managers from around the organization. During each of these manual reviews,…

Contents