An IS auditor discovers that a shared administrator account is used by several network engineers to manage critical infrastructure. Which of the following is the GREATEST risk associated with this practice?
-
A
Increased likelihood of password compromise due to social engineering.
-
B
Complexity in managing access when an engineer changes roles.
-
C
Inability to trace specific actions to an individual engineer.
-
D
Violation of the principle of 'need-to-know'.