I am getting a presentation together for a topic I am not SUPER knowledgeable in.
I am an admin within a nameless system, and of the opinion that a service account should be created for each individual integration(rather than sharing an integration account across multiple integration points).
Let's say, for example, certain data is getting updated by an integration account. I would be able to tell exactly which integration is causing the unintended update.
Am I correct in having the unique service account per integration stance? In my mind, this boils down to PAM, and properly managing privileged accounts.
There is some reference in NIST 800-53 AC-2 Account Management, I was just hoping someone could provide some real world practice.