Text of Recommendation | Develop a structured access process that is consistent with the SGI need-to-know requirement and least privilege principle. This should include: Establishing folder owners within SLES and providing the owners the authority to approve the need-to-know authorization (as opposed to branch chiefs). Conducting periodic reviews of user access to folders. Developing a standard process to grant user access. |
---|---|
Recommendation Number | 7 |
Recommendation Status | Closed |
Significant Recommendation | Yes |
Submitting OIG | |
---|---|
Linked Report |