Given the increased importance of SoD conflict-management in recent years – due to (inter-) national and industry-regulation – SoD conflicts must be considered with care to ensure compliance with applicable policies and standards.
Segregation of Duties Reviews deliver an overview of users or roles that combine critical combinations of access rights. Such conflicts may put the business at risk for error and fraud. Depending on project scope, the identified conflicts are to be assessed together with other mitigating controls in place or reported “as-is” for the customer to decide on in terms of exposure and acceptability. Additionally, “almost” SoD conflicts can also be identified, showing which users almost have conflicting access rights except for one or two authorizations (e.g. transactions).