Separation of Duties
Separation of responsibilities to prevent misuse and errors.
This involves consistently separating user and administration roles. A common example is the separation of application, operating system, and hardware administration. Ideally, an administrator of one entity should only be a user of the other services.
This strengthens the Zero Trust and Least Privilege architectural approach to enhance cybersecurity.
In the context of backup and cyber resilience, this means specifically: Administrators of the backup application are not administrators of the operating system or the storage infrastructure. Additionally, the company should have no access to at least one backup copy (usually the third copy) outside of the backup application. Empalis offers this approach through Viking Appliances, Backup as a Service, Wasabi, or the Empalis Sovereign Vault.