Privileged Account Naming Convention

LOW
Note: This indicator is in Early Access.

Description

The adoption of a naming convention for privileged users in Entra ID is a best practice for enhanced security, standardized user identification, and simplified administration.

Without a privileged user naming convention, identifying and securing accounts becomes challenging, elevating the risk of unauthorized access and potential security breaches. It also hinders administrators in understanding and managing user roles and permissions effectively.

Solution

All privileged users must have a prefix to simplify administration:

  • For an existing account flagged as deviant, edit the User principal name and use the prefix indicated in the option, which is adm_ by default.
  • For new accounts, add the prefix when creating the account.

Indicator Details

Name: Privileged Account Naming Convention

Codename: PRIVILEGED-ACCOUNT-NAMING-CONVENTION

Severity: Low