|
control enhancementAC-6(2)
Non-privileged Access for Nonsecurity Functions (AC-6(2))
Require that users of system accounts (or roles) with access to [organization-defined] use non-privileged accounts or roles, when accessing nonsecurity functions.
Security Baselines
MODERATEHIGHLOW
access-controlauthorizationleast-privilegeenhancement
Why These Connect
Enhances1
These enhancements add specific capabilities or refinements to the base control.
Baselined In2
This control is included in the linked security baseline (LOW, MODERATE, or HIGH).