Specifikacia dodacieho artefaktu
JIT access policy pack
JIT Privileged Access
JIT access policy pack defines the delivery artifact specification for JIT Privileged Access, including structure, evidence expectations, and approval boundaries.
Ucel
Provide a reviewable artifact that proves JIT Privileged Access implementation quality for stakeholders, operators, and assurance teams.
Kontext rozsahu
Privilege elevation only through ticketed, expiring, and auditable sessions.
Vstupy
- Approved implementation scope and stakeholder requirements
- Source architecture and policy configuration snapshots
- Validation results, test outcomes, and governance notes
Vystupy
- Versioned artifact document with ownership metadata
- Traceability links to controls, decisions, and evidence
- Sign-off checkpoint for founder or delegated approver
Akceptacne kriterie
- Artifact is complete, unambiguous, and reproducible
- All referenced controls and evidence links resolve
- Final sign-off status and revision history are visible
Poznamky ku compliance dokazom
- [nDSG] Artifact contains evidence section for domain-specific assurance
- [DORA] Artifact contains evidence section for domain-specific assurance
- [NIS2] Artifact contains evidence section for domain-specific assurance
Schema specifikacie
Rola vlastnika
Delivery Lead with Founder oversight
Schvalovaci sign-off
Founder or delegated Control Plane Principal
Politika verzovania
Semantic revisioning (major.minor.patch) with immutable change log
Rytmus revizie
Weekly during rollout, monthly after stabilization
Retencia dokazov
Minimum 24 months or regulatory minimum, whichever is longer
Povinne sekcie
- Document objective and decision context
- Scope boundary with included and excluded systems
- Implementation specification and control mapping
- Evidence references and verification results
- Risks, exceptions, and next remediation actions