1. | Click Integrated risk management. |
2. | Click the Enhanced SoD rules tab. |
3. | Click New. |
4. | In the Name field, type a value. |
5. | Define to which securable object level the segregation rule applies. The selected value defines what you can select in the First field and Second field. |
  | In the Type field, select an option. |
  |
Note: If the First field and Second field are filled, and you change the type, these fields are emptied. |
6. | Enter the date from which the segregation rule is effective. |
  | In the Effective from field, enter a date and time. |
7. | Enter the date to which the segregation rule is effective. |
  | In the Effective to field, enter a date and time. |
8. | Indicate if the segregation rule is active. |
  | Select Yes in the Enabled field. |
9. | Select the first securable object or segregation security set that is controlled by the rule. |
  | In the First field, enter or select a value. |
10. | If you define a segregation rule on entry point level, define the access level for the first entry point. This defines the valid and invalid entry point permission combinations. On validation, the defined access level combinations are taken into account. |
  | In the First access level field, select an option. |
11. | Select the second securable object or segregation security set that is controlled by the rule. |
  | In the Second field, enter or select a value. |
12. | If you define a segregation rule on entry point level, define the access level for the second entry point. This defines the valid and invalid entry point permission combinations. On validation, the defined access level combinations are taken into account. |
  | In the Second access level field, select an option. |
13. | Sub-task: Define risks. |
13.1 | To an enhanced segregation of duties rule, you can link a risk that helps mitigating the risk. |
  | Expand the Risk section. |
13.2 | Click Add. |
13.3 | In the Organization Risk field, enter or select a value. |
14. | Close the page. |
If you define a segregation rule on entry point level, also define the access level. This defines the valid and invalid entry point permission combinations. On validation, the defined access level combinations are taken into account.
Related to | Notes |
---|---|
Manage segregation of duties (enhanced) |
  |