Mandatory vacations: Mandatory vacations are a security and administrative control requiring employees to take uninterrupted time away from their specific job responsibilities. This policy is designed to help detect any fraudulent activities or inconsistencies in their absence, which might be concealed by their continuous presence. It’s often used in conjunction with job rotation and cross-training to strengthen internal controls and reduce the risk of fraud or error within an organization.
Categories: CC D1: Security Principles | CCSP D5: Cloud Security Operations | CISM D1: Information Security governance | CISSP D7: Security Operations | Security+ D5: Security Program Management and Oversight | SSCP D1: Security Concepts and Practices
« Back to Glossary Index