ISO 27001 8.2 Privileged Access Rights Requirement:
"The allocation and use of privileged access rights shall be restricted and managed."[1]
ISO 27001 8.2 Privileged Access Rights Requirement Explanation:
Only personnel with system and security administration responsibilities should have privileged access to the information system. When a user is granted privileged access they should not have privileged access to the entire information system.
References:
Quick & Simple
Discover Our Cybersecurity Compliance Solutions:
Whether you need to meet and maintain your compliance requirements, help your clients meet them, or verify supplier compliance we have the expertise and solution for you