ssc-spc-ccoe-cei / azure-guardrails-solution-accelerator

This implementation automates reporting to verify compliance with GC Cloud Guardrails. SSC and TBS review the results. Cette mise en œuvre automatise la production de rapports afin de vérifier la conformité aux mesures de sécurité infonuagique du GC. SPC et SCT examinent les résultats.
Other
7 stars 4 forks source link

GR2 | Validation 2 | Privileged Account Management Plan (Lifecycle of Account Management) #158

Closed MathesonSho closed 1 month ago

MathesonSho commented 1 month ago

GR2 |Validation 2 requires documentation to be uploaded to the storage account/ Attestation.

Document Titled "Privileged Account Management Plan". This is an existing control called "Privileged Account Management plan".

Need to determine whether this attestation will be kept in GR2 or moved to GR13.

**Assessor Note: Looking for a section on Lifecycle Management of accounts in the departmental policy/ document/

dutt0 commented 1 month ago

Decision taken to keep in GR2