Back to catalog
IAC-15.2IACIdentification & Authentication
Removal of Temporary / Emergency Accounts
Description
Automated mechanisms exist to disable or remove temporary and emergency accounts after an organization-defined time period for each type of account.
Cross-Mappings
112 paths across 3 frameworks
Cross-Mappings
NIST 800-531 mapping
AC-2(2)
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
CCI4 mappings
CCI-000016
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-001361
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-001365
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-001682
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
STIG66 mappings
SV-203592r958364_ruleThe operating system must automatically remove or disable temporary user accounts after 72 hours.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 3 · disa_xccdf · related
SV-203652r958508_ruleThe information system must automatically remove or disable emergency accounts after the crisis is resolved or 72 hours.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 3 · disa_xccdf · related
SV-204637r960771_ruleAAA Services must be configured to automatically remove temporary user accounts after 72 hours.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · V2R2 · disa_xccdf · related
SV-204638r960771_ruleAAA Services must be configured to automatically remove authorizations for temporary user accounts after 72 hours.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · V2R2 · disa_xccdf · related
SV-204680r971528_ruleAAA Services must be configured to prevent automatically removing emergency accounts.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · V2R2 · disa_xccdf · related
SV-204681r971528_ruleAAA Services must be configured to prevent automatically disabling emergency accounts.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · V2R2 · disa_xccdf · related
SV-205445r960771_ruleThe Mainframe Product must automatically remove or disable temporary user accounts after 72 hours.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 3 · disa_xccdf · related
SV-205522r971528_ruleThe Mainframe Product must be configured such that emergency accounts are never automatically removed or disabled.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 3 · disa_xccdf · related
SV-205624r958364_ruleWindows Server 2019 must automatically remove or disable temporary user accounts after 72 hours.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 3 · disa_xccdf · related
SV-205710r958508_ruleWindows Server 2019 must automatically remove or disable emergency accounts after the crisis is resolved or within 72 hours.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 3 · disa_xccdf · related
+56 more (top 10 by confidence shown)
Control mappings provided by the Secure Controls Framework (SCF).
SCF
Powered by the Secure Controls Framework
The control catalog, cross-mappings, and STRM relationship data shown here are provided by the Secure Controls Framework (SCF), 2026.2. Every mapping is credited to SCF as the methodology, with the SCF reference and version stored alongside it.
© SCF Council, LLC. Secure Controls Framework content is free and shown here with attribution. securecontrolsframework.com · About SCF on STIGViewer