Jump Server
What is Jump Server?
A hardened intermediary server used to access and manage devices in a separate security zone, enforcing access control and audit logging.
Terms that appear alongside jump server
Each of these is named in at least one of the same controls as jump server. The number is how many controls name both.
- remote access 3 shared controls
- nist 3 shared controls
- access control 3 shared controls
- role based access control 2 shared controls
- bastion host 2 shared controls
- privileged access management pam 2 shared controls
- least privilege 2 shared controls
- role based access control rbac 2 shared controls
Frameworks that govern jump server
What the standards actually require on jump server
Requirements naming jump server across 6 standards, quoted from the control text.
All ML1 requirements plus: Privileged access to systems, applications and data repositories is disabled after 12 months unless revalidated. Privileged access to systems and applications is disabled after 45 days of inactivity.
E8-ADMIN-ML2 · Restrict Administrative Privileges (ML2) →NSS-17 + NSS-42-G require comprehensive access control aligned with CSL: unique user identification + no shared accounts where feasible (emergency shared accounts logged + reviewed);
IAEA-NSS17-AccessControl-OT-IT-Authentication-Authorization · IAEA NSS-17 - Access Control + Authentication + Authorization + IAM + Privileged Access for OT and IT →Service provider implements secure wireless and remote access mechanisms when providing IACS services, including MFA, jump servers, session recording, time-limited access and explicit asset owner approval.
62443-2-4-SP-04 · Service Provider Wireless and Remote Access Practices →Protect is the second of five functional elements per MSC-FAL.1/Circ.3/Rev.2. Activities include: (1) Access Control - identity and access management for IT + OT systems + role-based access + least privilege + privileged access management (PAM) for OT engineer...
IMO-MSC-FAL-Protect-AccessControl-NetworkSegmentation-MalwareDefence-Patch-Awareness-DataSecurity · IMO MSC-FAL Protect Function - Access Control + Network Segmentation + Malware Defence + Patch Management + Awareness Training + Data Security + Crew BYOD + Removable Media →Implement NIST 800-53 AC Access Control family + IA Identification and Authentication family per MARS-E v2.0 catalog. NIST 800-63-3 Identity Assurance Level 2 (IAL2) + Authenticator Assurance Level 2 (AAL2) + Federation Assurance Level 2 (FAL2) for Exchange co...
MARS-E-Access-Control-Identity-Authentication-NIST-800-63-Identity-Assurance-Levels-MFA-AC-IA-Families · MARS-E Access Control + Identity + Authentication + NIST 800-63 + MFA + AC + IA Families →Implement Operations Security + Physical/Environmental Security + Communications and Network Security per MTCS SS 584. Operations Security (ISO 27001 Annex A.12 alignment) - documented operating procedures + capacity management + separation of dev/test/prod +...
MTCS-Operations-Physical-Network-Tier-III-Data-Centre-Hardening-Patching-Network-Segmentation-DDoS · MTCS Operations + Physical + Network + Tier III Data Centre + Hardening + Patching + Segmentation + DDoS →Questions people ask about jump server
What is Jump Server?
Why is Jump Server important for compliance?
Which compliance frameworks address Jump Server?
Where can I learn more about Jump Server?
See how Jump Server applies across compliance frameworks
Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.