Logical Access Control Policy - VITA

The System Owner (or designee) shall approve emergency access to sensitive IT systems for a predetermined period not greater than 30 days, and notifies the ISO for oversight. If the emergency access request leads to changes in the user’s access level, attributes for the account are included in the documentation and maintained on file. ................
................