A security administrator at a financial institution discovers that several developers are sharing credentials for a service account that has elevated privileges to the company's production database. What is the most appropriate action to address this security concern?
Create a new shared service account for each development team instead of one for all developers
Rotate the service account password weekly and distribute it through a secure channel
Move the service account to a password vault but continue allowing shared access
Implement individual named accounts with appropriate access controls
The correct answer is to implement individual named accounts with appropriate access controls. Sharing service account credentials violates the principle of accountability as actions cannot be attributed to specific individuals. Individual named accounts ensure accountability, enable proper access reviews, and maintain an accurate audit trail necessary for security and compliance.
The other options fail to address the core accountability issue: rotating passwords still allows shared access, using a password vault changes how credentials are accessed but maintains the shared model, and creating team-specific service accounts still prevents individual accountability.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is the principle of accountability in security?
Open an interactive chat with Bash
Why is sharing service account credentials a security risk?
Open an interactive chat with Bash
How do individual named accounts enhance security over shared accounts?
Open an interactive chat with Bash
ISC2 CISSP
Identity and Access Management (IAM)
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .