Best Practices for Removing Accounts in SaaS-Based Systems | Organization's Security Analyst Solution

Resolve Account Removal Delays in SaaS Systems | Organization's Security Analyst Solution

Question

A security analyst discovers accounts in sensitive SaaS-based systems are not being removed in a timely manner when an employee leaves the organization.

To BEST resolve the issue, the organization should implement:

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

A.

The situation described in the question highlights a concern regarding the timely removal of accounts in sensitive SaaS-based systems. This can pose a significant security risk, as former employees may still have access to sensitive data or systems. To address this issue, the organization needs to implement a solution that ensures the timely removal of accounts.

Option A, federated authentication, is a method of authentication that allows users to access multiple systems or applications using a single set of credentials. While this can help streamline access control, it does not necessarily address the issue of timely account removal.

Option B, role-based access control, is a method of access control that restricts system access based on a user's job function or role. While this can help mitigate the risk of unauthorized access, it does not address the root cause of the issue, which is the failure to remove accounts in a timely manner.

Option D, multifactor authentication, is a method of authentication that requires users to provide multiple forms of authentication before accessing a system or application. While this can help improve security, it does not necessarily address the issue of timely account removal.

Option C, manual account reviews, is the best solution to address the issue. Manual account reviews involve regularly reviewing and auditing user accounts to identify inactive or unnecessary accounts that can be deleted. This ensures that accounts are removed in a timely manner, thereby mitigating the risk of former employees having access to sensitive data or systems.

Therefore, the BEST solution to resolve the issue of accounts not being removed in a timely manner when an employee leaves the organization is to implement manual account reviews (option C).