last sync: 2024-Nov-25 18:54:24 UTC

Microsoft Managed Control 1004 - Account Management | Regulatory Compliance - Access Control

Azure BuiltIn Policy definition

Source Azure Portal
Display name Microsoft Managed Control 1004 - Account Management
Id c17822dc-736f-4eb4-a97d-e6be662ff835
Version 1.0.0
Details on versioning
Versioning Versions supported for Versioning: 0
Built-in Versioning [Preview]
Category Regulatory Compliance
Microsoft Learn
Description Microsoft implements this Access Control control
Additional metadata Name/Id: ACF1004 / Microsoft Managed Control 1004
Category: Access Control
Title: Account Management - Conditions for Group/Role Membership
Ownership: Customer, Microsoft
Description: The organization: Establishes conditions for group and role membership;
Requirements: When an Azure user requests access to any security group, the request is approved by the owner of the group based on the criteria defined for membership. Azure has certain environment-wide conditions, such as screening and training completion, that are met before receiving any Azure account. Additional conditions and criteria are established by the service team. All conditions are enforced by OneIdentity.
Mode Indexed
Type Static
Preview False
Deprecated False
Effect Fixed
audit
RBAC role(s) none
Rule aliases none
Rule resource types IF (2)
Microsoft.Resources/subscriptions
Microsoft.Resources/subscriptions/resourceGroups
Compliance Not a Compliance control
Initiatives usage none
History none
JSON compare n/a
JSON
api-version=2021-06-01
EPAC