When an entity attempts to modify the service through a user
interface, the authentication process MUST require multiple
identifying factors for authentication.
tlp-clear
tlp-green
tlp-amber
tlp-red
CCC.Core.C03.TR02
When an entity attempts to modify the service through an API
endpoint, the authentication process MUST require a credential
such as an API key or token AND originate from within the trust
perimeter.
tlp-clear
tlp-green
tlp-amber
tlp-red
CCC.Core.C03.TR03
When an entity attempts to view information on the service through
a user interface, the authentication process MUST require multiple
identifying factors from the user.
tlp-amber
tlp-red
CCC.Core.C03.TR04
When an entity attempts to view information on the service through
an API endpoint, the authentication process MUST require a
credential such as an API key or token AND originate from within
the trust perimeter.