Skip to main content
Guidance

Secure system administration

Design principles for IT and OT systems to help you develop and implement your own system management strategy to protect your most sensitive data.

Page 4 of 6

Risk manage administration using tiers

Not all administration is the same.

The potential impact of a compromised or misused administrator account will vary. Some could have a catastrophic effect on your business. Others will be less damaging.

Examples of highly critical administration

  • The ‘root’ account of a cloud service control panel, for a production environment.
  • Administration of an industrial utilities device that supports critical operations.
  • Administration credentials for a database that contains large amounts of Personally Identifiable Information.
  • Administration of a component, that is responsible for implementing and enforcing security policies. Such as key signing.

Examples of administration that are still important, but could be less critical:

  • A developer account for a cloud service control panel, for a non-production, development sandbox.
  • An account that has ‘read-only’ access to a utilities device that would not disrupt operations if attacked.
  • An account with constrained privileges, on a web server that only provides public, static content.
  • A front line support interface, that can initiate pre-defined, low-impact process such as sending a password reset link to the account owner's email address.






Reviewed

Version

1.1