ISC Exam Questions

Which choice below is NOT a common element of user account administration?

Which choice below is NOT a common element of user account
administration?

A.
Establishing, issuing, and closing user accounts

B.
Authorizing the request for a users system account

C.
Tracking users and their respective access authorizations

D.
Periodically verifying the legitimacy of current accounts and access
authorizations

Explanation:
For proper separation of duties, the function of user account establishment
and maintenance should be separated from the function of initiating
and authorizing the creation of the account. User account
management focuses on identification, authentication, and access
authorizations. This is augmented by the process of auditing and otherwise
periodically verifying the legitimacy of current accounts and
access authorizations. Also, there are considerations involved in the
timely modification or removal of access and associated issues for
employees who are reassigned, promoted, or terminated, or who retire.
Source: National Institute of Standards and Technology, An Introduction
to Computer Security: The NIST Handbook Special Publication 800-12.