Skip to content
arrow_back
search
ISM-0430 policy ASD Information Security Manual (ISM)

Immediate Suspension of Unneeded System Access

Revoke system access for individuals as soon as it's no longer needed.

record_voice_over

Plain language

This is about making sure that when someone no longer needs access to a system or data, their access is cut off straight away. It's like taking back the keys from someone who has moved out of a shared house. If not done immediately, the risk is that former employees or contractors could still get into your systems, possibly leading to data breaches or unauthorised usage.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

May 2025

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Access to systems and their resources are removed or suspended the same day personnel no longer have a legitimate requirement for access.
policy ASD Information Security Manual (ISM) ISM-0430
priority_high

Why it matters

Delays in revoking access can let former staff use retained credentials, increasing the likelihood of unauthorised access, data breaches or misuse.

settings

Operational notes

Integrate same-day access suspension/removal into offboarding, and validate accounts are disabled across all systems.

Mapping detail

Mapping

Direction

Controls