How to handle Unlinked Accounts

Unlinked Accounts are accounts Secureframe is unable to link to an existing user. They may be missing a first, last name, or email and the platform is unable to confirm if they are Personnel or Service accounts. 

Unlinked accounts may interfere with accurate tracking of personnel access, security training, and policy acknowledgement. Resolving them ensures your evidence is audit-ready and your personnel list is accurate.

To see your Unlinked Accounts, head to the Personnel page:

  • If present, click the banner located at the top until all of the page.
  • If the banner is not present, all of your Unlinked accounts may already be addressed. 

How to mark unlinked accounts one by one

  1. Link to Existing - If these accounts are actual users, we recommend reviewing the accounts and linking them to their respective user. Once you link to existing you will have the option to associate this unlinked account to a new employee or new contractor.
  2. Mark Non-Personnel - If the unlinked account is a service account then we'd recommend marking the account as a Non-Personnel Account.
    • The Non-Personnel Account modal will require a First and Last name along with an email. We suggest entering a fictitious first and last name (see example below) to classify as a Non-Personnel  Account.
    • It will also need an [made up] email address (see example below). After classifying the first Non-Personnel Account, you can link all other service accounts to the existing “user" by searching the fictitious name.  Example:

How to mark unlinked accounts in bulk

By selecting one or more of the service accounts in your Unlinked Accounts, a pop-up in the bottom of the screen will allow you to Link to Existing or Mark Non-Personnel. 

Screenshot 2024-10-23 at 1.25.30 PM.png

Tips to Identify Service Accounts

  • Account has no first or last name

  • Username includes terms like svc, bot, or automation

  • Email address is generic or linked to automated tools

Frequently Asked Questions (FAQ)

I have hundreds of service accounts, how can I handle this tasks easily in Secureframe?

  • If all of these accounts are truly service accounts and not in scope, then you can select all that apply and click Mark non-personnel. This will ask you to provide a first name, last name, email and you can use the example below to handle this bulk job in one step. 
  • We understand that a Service Account should not necessarily require a first and last name, and we have a current Feature Request to make this easier. In the meantime, here is an Example way to handle:

How do I just remove a now-irrelevant account? In this case, a employee who was never given access to a company email or computer, but the first & last name ended up in Unlinked Accounts?

  • In this case, since the employee does not have an email address, but that is required to mark as non-personnel, we recommend entering a fictitious (non-real) email address, after which you should be able to mark the unlinked account as non-personnel.

 

Was this article helpful?

Have more questions? Submit a request

Comments

0 comments

Article is closed for comments.