Which scenario correctly describes 'separation of duties' as required under CJIS information security controls?
-
A
One administrator handles both system auditing and user account management
-
B
The person who approves CJI access requests does not also grant that access
-
C
Officers share login credentials to speed up system access
-
D
A supervisor reviews their own audit logs to check for errors