Skip to content

Latest commit

 

History

History
26 lines (16 loc) · 1001 Bytes

File metadata and controls

26 lines (16 loc) · 1001 Bytes

References

NIST Standards

  • NIST SP 800-53 Rev. 5 — Security and Privacy Controls for Information Systems and Organizations (AC-2, AC-5, AC-6, PS-4, PS-5)
  • NIST SP 800-63 — Digital Identity Guidelines

ISO/IEC Standards

  • ISO/IEC 27001:2022 — Annex A controls A.5.16, A.5.18, A.6.1, A.6.5, A.8.2

Audit & Assurance Frameworks

  • AICPA SOC 2 Trust Services Criteria — CC6.1–CC6.3 (Logical and Physical Access Controls)
  • PCI Security Standards Council — PCI-DSS v4.0, Requirements 7 and 8

Industry & Vendor Resources

  • SailPoint — Identity Governance & Administration documentation and best practices
  • Okta — Lifecycle Management and SCIM provisioning documentation
  • Microsoft Learn — Azure AD (Entra ID) identity lifecycle and access reviews documentation
  • ServiceNow — IT Service Management (ITSM) and HR Service Delivery documentation

Protocols

  • SCIM (System for Cross-domain Identity Management) — IETF RFC 7643 / RFC 7644