system account attribute
163508·updated Aug 30, 2026A descriptive noun phrase, not a standalone defined term, referring to the set of properties or metadata fields that an organization formally assigns to any managed access account — regardless of account type (individual, shared, group, guest, emergency, service, etc.) — that collectively govern how that account may be used. Organizations may define access privileges or other attributes by account or type of account, with examples including restrictions on time of day, day of week, and point of origin. When defining these attributes, organizations consider both system-related requirements and mission/business requirements — such as scheduled maintenance windows or time-zone differences — making the attribute set the formal specification used to create, manage, and audit accounts under an identity governance program.
Source
attributes, organizations consider system requirements (e.g., system upgrades, scheduled maintenance) and mission and business requirements (e.g., time zone differences,the sentence this term was read in
generalized from a web lookup of the quoted expression at proposal time Verdict: compositional.
A definition generalized from search results is a draft to react to, not provenance. Confirm it against an authority document before this term is verified.
A web lookup ran when this term was proposed
A descriptive property—or the collective set of such properties—associated with a managed access account within an information system, used to define and govern the conditions under which that account is authorized to operate. Organizations may define access privileges or other attributes by account or type of account; examples of attributes required for authorizing access include restrictions on time of day, day of week, and point of origin. The category spans all account types (individual, shared, group, service, emergency, etc.) rather than any single type, and when defining these attributes, organizations consider system-related requirements such as scheduled maintenance and upgrades, as well as mission and business requirements such as time zone differences and remote access needs, because failure to account for these factors could affect system availability. In practice, access authorizations (i.e., privileges) and organization-defined attributes are specified for each account as part of the account management lifecycle, covering creation, modification, and removal.
Advisory only. A term this product ships is defined by an authority document, not by a search result.
Proposed during multiword review of this document in the CKI mapping queue.
Attested in
Classifications
Entity Type
Sensitivity
Information Class
Variants
- plural
- system account attributes
- possessive
- system account attribute's
- pluralpossessive
- system account attributes'
Framework definitions
- §1 · attested_usage_reviewer_confirmed
- No definition is given in NIST SP 800-171r3. The term is attested in use at 1 citation in that document; a definition is pending curation.Increment 2: attested in 800-171r3 without a glossary definition.
- §1 · web_lookup_draft
- A descriptive noun phrase, not a standalone defined term, referring to the set of properties or metadata fields that an organization formally assigns to any managed access account — regardless of account type (individual, shared, group, guest, emergency, service, etc.) — that collectively govern how that account may be used. Organizations may define access privileges or other attributes by account or type of account, with examples including restrictions on time of day, day of week, and point of origin. When defining these attributes, organizations consider both system-related requirements and mission/business requirements — such as scheduled maintenance windows or time-zone differences — making the attribute set the formal specification used to create, manage, and audit accounts under an identity governance program.DR-088 backfill from the noun definition column