🔥 3-day streak
ISACA CISA — Certified Information Systems Auditor76 / 148
Question 76 of 148
An IS auditor reviewing an organization's identity and access management program finds that access is granted individually to each user based on the specific request submitted by their manager. As the workforce has grown, the auditor observes that many users with the same job function have inconsistent access rights, and access reviews take excessive time. Which control approach should the auditor recommend to BEST address this situation?
Reviewed for accuracy · Report an issueNext question