This objective focuses on ensuring that your access control procedures—not just your policies—are actively used to enforce the requirement that privileged functions are performed only by authorized privileged accounts.
This objective focuses on ensuring that your access control procedures—not just your policies—are actively used to enforce the requirement that privileged functions are performed only by authorized privileged accounts.