Skip to main content
Guidance

Principles for secure privileged access workstations (PAWs)

How to design and securely build management devices for high-risk system maintenance and administration.

Page 4 of 10

Principle 2: Design your PAW solution to be usable and secure

To ensure you have a secure solution that is also useable in practice, you should take the time to understand these needs when designing your PAW, and revisit and update it over time to stay effective.

An effective PAW solution is designed to meet both your organisation’s user needs and its risk tolerances. Although a PAW can be highly restrictive by nature, it still needs to be an enabling technology. It should provide users with the tools they need to carry out their work effectively, or they will look for less secure alternatives. To ensure you have a secure solution that is also useable in practice, you should take the time to understand these needs when designing your PAW.

As the needs of your organisation and users change over time, the design and implementation of your PAW should evolve too. You will need to revisit and update both for the PAW to stay effective.




Published

Reviewed

Version

1.0