Under active development Content is continuously updated and improved

AC-2(13)Account Management

Secret
Technical

>Control Description

ACCOUNT MANAGEMENT | DISABLE ACCOUNTS FOR HIGH-RISK INDIVIDUALS The organization disables accounts of users posing a significant risk within organization-defined time period of discovery of the risk.

>Supplemental Guidance

Users posing a significant risk to organizations include individuals for whom reliable evidence or intelligence indicates either the intention to use authorized access to information systems to cause harm or through whom adversaries will cause harm. Harm includes potential adverse impacts to organizational operations and assets, individuals, other organizations, or Canada. Close coordination between authorizing officials, information system administrators, and human resource managers is essential in order for timely execution of this control enhancement.

Related controls: PS-4.

Ask AI

Configure your API key to use AI features.