SunflowerCISSP Community-crafted CISSP™ mastery
Need-To-Know -

Need-To-Know

Views: 0
Votes: 0 (Avg 0.0)
A method of isolating information resources based on a user’s need to have access to that resource in order to perform their job but no more; for example, a personnel officer needs access to sensitive personnel records and a marketing manager needs access to sensitive marketing information but not vice versa. The terms “needtoknow” and “least privilege” express the same idea. Needtoknow is generally applied to people, while least privilege is generally applied to processes. Necessity for access to, or knowledge or possession of, specific official information required to carry out official duties.
Average rating: 0.0 (0 reviews)
Sign in to manage your flashcard decks and leave a comment.

Discussion (0)

No comments yet. Be the first to share your experience with this term.