FedRAMP Removal of Temporary / Emergency Accounts AC-2 (2)


Overview:
The information system automatically [Selection: removes; disables] temporary and emergency accounts after [Assignment: organization-defined time period for each type of account].


Supplemental Guidance:
This control enhancement requires the removal of both temporary and emergency accounts automatically after a predefined period of time has elapsed, rather than at the convenience of the systems administrator.


Action Items:
1) Remove temporary accounts on a predefined basis


Related Documents:
1) Access Control Policy

2) Identity and Access Management Policy


Additional Guidance:
Moderate FedRAMP-Defined Assignment / Selection Parameters
AC-2 (2) [no more than 30 days for temporary and emergency account types]


Moderate Additional FedRAMP Requirements and Guidance
none

 



Article ID: 12
Created: September 25, 2022
Last Updated: September 26, 2022
Author: Matthew Burdick

Online URL: http://www.compliancewiki.org/article/fedramp-removal-of-temporary-emergency-accounts-ac-2-2-12.html