CYBERSECURITY GLOSSARY Malware and viruses CYBERSECURITY GLOSSARY Attacks and techniques CYBERSECURITY GLOSSARY Detection and response CYBERSECURITY GLOSSARY Identity and access CYBERSECURITY GLOSSARY Cloud and infrastructure CYBERSECURITY GLOSSARY Compliance and management CYBERSECURITY GLOSSARY Continuity and metrics CYBERSECURITY GLOSSARY Privacy and OSINT CYBERSECURITY GLOSSARY Cybersecurity
← Back to the glossary Cybersecurity glossary · Identity and access

Principle of least privilege

The principle of least privilege states that every person, application or account should have only the permissions it needs to do its job, and nothing more. If an accounting account can only see financial data, an attacker who steals it cannot reach the servers or HR records.

Related term in this glossary: IAM (identity and access management)

least privilege, PoLP, minimal privilege, least-privilege access

Ready to put this into practice in your operation?

Tell us what you need and a TecnetOne engineer will get back to you.

Talk to an engineer