QuestionQ1

Protection of Information Assets

A business unit received an audit finding after an administrator made unauthorized emergency changes to a critical system. Which of the following would BEST prevent unauthorized changes in the future?

Explanation

Dual-control temporary emergency access accounts require participation by two authorized individuals before emergency access can be used. This enforces authorization in advance and prevents one administrator from independently making an unapproved emergency change.

Community Discussion

No comments yet. Be the first to start the discussion!