FedRAMP Automated System Account Management AC-2 (1)


Overview:
The organization employs automated mechanisms to support the management of information system accounts.


Supplemental Guidance:
The use of automated mechanisms can include, for example: using email or text messaging to automatically notify account managers when users are terminated or transferred; using the information system to monitor account usage; and using telephonic notification to report atypical system account usage.


Action Items:
1) Implement automated processes to support management of accounts


Related Documents:
1) Access Control Policy

2) Identity and Access Management Policy

3) Logging and Monitoring Policy


Additional Guidance:
Moderate FedRAMP-Defined Assignment / Selection Parameters
none


Moderate Additional FedRAMP Requirements and Guidance
none



Article ID: 11
Created: September 25, 2022
Last Updated: September 26, 2022
Author: Matthew Burdick

Online URL: http://www.compliancewiki.org/article/fedramp-automated-system-account-management-ac-2-1-11.html