graphgrc

SCF - IAC-02 - Identification & Authentication for Organizational Users

Mechanisms exist to uniquely identify and centrally Authenticate, Authorize and Audit (AAA) organizational users and processes acting on behalf of organizational users.

Mapped framework controls

ISO 27002

NIST 800-53

SOC 2

Control questions

Does the organization uniquely identify and centrally Authenticate, Authorize and Audit (AAA) organizational users and processes acting on behalf of organizational users?