last sync: 2024-Nov-25 18:54:24 UTC

Automate notification of employee termination | Regulatory Compliance - Operational

Azure BuiltIn Policy definition

Source Azure Portal
Display name Automate notification of employee termination
Id 729c8708-2bec-093c-8427-2e87d2cd426d
Version 1.1.0
Details on versioning
Versioning Versions supported for Versioning: 1
1.1.0
Built-in Versioning [Preview]
Category Regulatory Compliance
Microsoft Learn
Description CMA_C1521 - Automate notification of employee termination
Additional metadata Name/Id: CMA_C1521 / CMA_C1521
Category: Operational
Title: Automate notification of employee termination
Ownership: Customer
Description: The customer is responsible for employing automated mechanisms to notify customer-defined personnel/roles upon termination of a customer employee.
Requirements: The customer is responsible for implementing this recommendation.
Mode All
Type BuiltIn
Preview False
Deprecated False
Effect Default
Manual
Allowed
Manual, Disabled
RBAC role(s) none
Rule aliases none
Rule resource types IF (1)
Microsoft.Resources/subscriptions
Compliance
The following 3 compliance controls are associated with this Policy definition 'Automate notification of employee termination' (729c8708-2bec-093c-8427-2e87d2cd426d)
Control Domain Control Name MetadataId Category Title Owner Requirements Description Info Policy#
FedRAMP_High_R4 PS-4(2) FedRAMP_High_R4_PS-4(2) FedRAMP High PS-4 (2) Personnel Security Automated Notification Shared n/a The organization employs automated mechanisms to notify [Assignment: organization-defined personnel or roles] upon termination of an individual. Supplemental Guidance: In organizations with a large number of employees, not all personnel who need to know about termination actions receive the appropriate notifications—or, if such notifications are received, they may not occur in a timely manner. Automated mechanisms can be used to send automatic alerts or notifications to specific organizational personnel or roles (e.g., management personnel, supervisors, personnel security officers, information security officers, systems administrators, or information technology administrators) when individuals are terminated. Such automatic alerts or notifications can be conveyed in a variety of ways, including, for example, telephonically, via electronic mail, via text message, or via websites. link 1
NIST_SP_800-53_R4 PS-4(2) NIST_SP_800-53_R4_PS-4(2) NIST SP 800-53 Rev. 4 PS-4 (2) Personnel Security Automated Notification Shared n/a The organization employs automated mechanisms to notify [Assignment: organization-defined personnel or roles] upon termination of an individual. Supplemental Guidance: In organizations with a large number of employees, not all personnel who need to know about termination actions receive the appropriate notifications—or, if such notifications are received, they may not occur in a timely manner. Automated mechanisms can be used to send automatic alerts or notifications to specific organizational personnel or roles (e.g., management personnel, supervisors, personnel security officers, information security officers, systems administrators, or information technology administrators) when individuals are terminated. Such automatic alerts or notifications can be conveyed in a variety of ways, including, for example, telephonically, via electronic mail, via text message, or via websites. link 1
NIST_SP_800-53_R5 PS-4(2) NIST_SP_800-53_R5_PS-4(2) NIST SP 800-53 Rev. 5 PS-4 (2) Personnel Security Automated Actions Shared n/a Use [Assignment: organization-defined automated mechanisms] to [Selection (OneOrMore): notify [Assignment: organization-defined personnel or roles] of individual termination actions;disable access to system resources] . link 1
Initiatives usage
Initiative DisplayName Initiative Id Initiative Category State Type
FedRAMP High d5264498-16f4-418a-b659-fa7ef418175f Regulatory Compliance GA BuiltIn
NIST SP 800-53 Rev. 4 cf25b9c1-bd23-4eb6-bd2c-f4f3ac644a5f Regulatory Compliance GA BuiltIn
NIST SP 800-53 Rev. 5 179d1daa-458f-4e47-8086-2a68d0d6c38f Regulatory Compliance GA BuiltIn
History
Date/Time (UTC ymd) (i) Change type Change detail
2022-09-27 16:35:32 change Minor (1.0.0 > 1.1.0)
2022-09-19 17:41:40 add 729c8708-2bec-093c-8427-2e87d2cd426d
JSON compare
compare mode: version left: version right:
JSON
api-version=2021-06-01
EPAC