ISM-0407—ISM-0407
>Control Description
A secure record is maintained for the life of each system covering the following for each user:
· their user identification
· their signed agreement to abide by usage policies for the system and its resources
· who provided authorisation for their access
· when their access was granted
· the level of access that they were granted
· when their access, and their level of access, was last reviewed
· when their level of access was changed, and to what extent (if applicable)
· when their access was withdrawn (if applicable).
>Cross-Framework Mappings
Ask AI
Configure your API key to use AI features.