last sync: 2025-Apr-29 17:16:02 UTC

Microsoft Managed Control 1005 - Account Management | Regulatory Compliance - Access Control

Azure BuiltIn Policy definition

Source Azure Portal
Display name Microsoft Managed Control 1005 - Account Management
Id 5b626abc-26d4-4e22-9de8-3831818526b1
Version 1.0.0
Details on versioning
Versioning Versions supported for Versioning: 0
Built-in Versioning [Preview]
Category Regulatory Compliance
Microsoft Learn
Description Microsoft implements this Access Control control
Cloud environments AzureCloud = true
AzureUSGovernment = true
AzureChinaCloud = unknown
Available in AzUSGov The Policy is available in AzureUSGovernment cloud. Version: '1.0.0'
Repository: Azure-Policy 5b626abc-26d4-4e22-9de8-3831818526b1
Additional metadata Name/Id: ACF1005 / Microsoft Managed Control 1005
Category: Access Control
Title: Account Management - Authorized Users
Ownership: Customer, Microsoft
Description: The organization: Specifies authorized users of the information system, group and role membership, and access authorizations (i.e., privileges) and other attributes (as required) for each account;
Requirements: The Azure service team's management identifies service team personnel who should be given authorization to access the system and specifies the type of privilege each service team personnel should have based on their role. Azure utilizes Role-Based Access Control (RBAC) to identify and control the access privileges of each service team user in accordance with OneIdentity restrictions. Access privileges vary depending on the role a specified service team member assumes within the service team. Access privileges are defined by the service teams in OneIdentity and enforced by Active Directory.
Mode Indexed
Type Static
Preview False
Deprecated False
Effect Fixed
audit
RBAC role(s) none
Rule aliases none
Rule resource types IF (2)
Compliance
The following 1 compliance controls are associated with this Policy definition 'Microsoft Managed Control 1005 - Account Management' (5b626abc-26d4-4e22-9de8-3831818526b1)
Control Domain Control Name MetadataId Category Title Owner Requirements Description Info Policy#
NIS2 PV._Posture_and_Vulnerability_Management_5 NIS2_PV._Posture_and_Vulnerability_Management_5 NIS2_PV._Posture_and_Vulnerability_Management_5 PV. Posture and Vulnerability Management Security in network and information systems acquisition, development and maintenance, including vulnerability handling and disclosure n/a missing value 47
Initiatives usage
Initiative DisplayName Initiative Id Initiative Category State Type polSet in AzUSGov
[Preview]: NIS2 32ff9e30-4725-4ca7-ba3a-904a7721ee87 Regulatory Compliance Preview BuiltIn unknown
History none
JSON compare n/a
JSON
api-version=2021-06-01
EPAC