unified

UC-ACCESS-06 — Manage unique identities and identifiers end to end

Every user, service, and device is assigned a unique identifier from an authoritative source; shared or group identifiers are prohibited except under documented approval with compensating controls. Identifiers are issued through a controlled process, mapped to accountable owners, deactivated promptly when no longer needed, and not reused for a defined period.

Record JSON · Open in map · Data retrieval guide

Catalog revision: 24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028. A connection does not establish full coverage.

Attributes

domain
Access Control & Identity Management
type
preventive
category
technical

Details

unified_id
UC-ACCESS-06
title
Manage unique identities and identifiers end to end
statement
Every user, service, and device is assigned a unique identifier from an authoritative source; shared or group identifiers are prohibited except under documented approval with compensating controls. Identifiers are issued through a controlled process, mapped to accountable owners, deactivated promptly when no longer needed, and not reused for a defined period.
domain
Access Control & Identity Management
control_type
preventive
control_category
technical
members
  • framework
    nist-800-53
    control_id
    IA-4
    coverage
    full
    relationship
    superset_of
  • framework
    nist-csf-2
    control_id
    PR.AA-01
    coverage
    partial
    delta
    credential issuance and protection satisfied by the authenticator management control
    relationship
    intersects_with
  • framework
    iso-27001
    control_id
    A.5.16
    coverage
    full
    relationship
    superset_of
guidance
  • source
    nist-ai-agent-identity
    sourceTitle
    NIST NCCoE: Software and AI Agent Identity and Authorization
    propositionId
    NIST-AGI-01
    propositionTitle
    Distinct agent identities and identity boundaries
    sourcePages
    Concept paper pp. 4, 6: Identification; Areas of Interest

Source

No record-specific source URL is provided.

Connections