Click HERE to see how Saviynt Intelligence is transforming the industry. |
03/22/2024 03:26 AM
Hello ,
At our client, we have a 3 level workflow already in place (Manager --> Business Owner --> CISO) depending on the criticality of the entitlement.
We have now implemented SOD's and mitigation controls and added additional level of approval at the workflow level i.e. (Manager --> SOD approval/review and apply mitigation control --> Business Owner --> CISO) and we have the following questions w.r.t feasibility of this workflow --
1. Is the manager allwed to simply see all entitlements requested and take action(approve/reject) and pass it to second level i.e. SOD reviewer to apply mitigation controls
2. can SOD review and process to apply mitigation control happen at second stage (and not at first level )- and what are the actions SOD reviewer can take : is it approve/reject or apply mitigation controls?
3. After applying mitigation controls at second level , will the request proceed to next levels and get completed once all the approvals are done?
03/22/2024 08:04 AM
1. Is the manager allwed to simply see all entitlements requested and take action(approve/reject) and pass it to second level i.e. SOD reviewer to apply mitigation controls
--> Yes
2. can SOD review and process to apply mitigation control happen at second stage (and not at first level )- and what are the actions SOD reviewer can take : is it approve/reject or apply mitigation controls?
--> I believe yes
3. After applying mitigation controls at second level , will the request proceed to next levels and get completed once all the approvals are done?
--> Yes
Thanks,
Devang Gandhi
If this reply answered your question, please Accept As Solution and give Kudos to help others who may have a similar problem.
03/22/2024 08:23 AM
workflow configs ( mc required on risk