From the course: ISC2 Systems Security Certified Practitioner (SSCP) (2024) Cert Prep
Unlock this course with a free trial
Join today to access over 24,900 courses taught by industry experts.
Accountability
From the course: ISC2 Systems Security Certified Practitioner (SSCP) (2024) Cert Prep
Accountability
- [Instructor] Effective access control systems, enforced the principle of accountability. Accountability means that every action taken on a system can be clearly traced back to an individual user without any ambiguity. Administrators can clearly tell who performed an action and the individual can't deny responsibility for that action. There are two prerequisites for ensuring accountability, and they are two of the fundamental requirements for any access control system. The first is identification. Each user of the system must be identified by unique identifiers, such as a username. The system and organizational policy must not allow the use of any shared departmental or generic accounts. If two individuals share an account, the system can't distinguish between them, and either of the two users can simply blame the other for any action taken under the shared account. Without identification, there is no…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.
Contents
-
-
-
-
-
-
- The goals of information security2m 8s
- (Locked) Confidentiality2m 8s
- (Locked) Integrity3m 6s
- (Locked) Availability1m 46s
- (Locked) Accountability2m 24s
- (Locked) Need to know and least privilege2m 33s
- (Locked) Segregation of duties (SoD)3m 17s
- (Locked) Privacy compliance4m 6s
- (Locked) Employee privacy1m 54s
- (Locked) Ethics1m 34s
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-