Segregation of Duties Reporting

Video Transcript This is a brief demonstration of ALLOut Segregation of Duties reporting, which is the cornerstone of risk reporting and management. The ultimate purpose of segregating duties is to reduce risk by separating duties and the access associated with those duties. We're limiting the opportunity for misuse of company assets, whether through fraud or through error. With ALLOut, you can identify and address SOD breaching access before the fraud or errors occur. SOD rules define which business processes should be separated, and critical process lists define the programs used by those processes. SOD reporting compares these rules and lists to your user's security permissions to determine SOD breaching access. Let's take a look. Everything we need can be found within ALLOut's access and audit reporting menu. To begin using this feature right away, we could simply define the critical process lists and SOD rules, and then run the reports. I'll show you both of these steps in a moment, but first, let's take a look at some optional ways to enhance your SOD reporting. We could choose to load and maintain menu routes, which enables us to incorporate task view and menu filters into the SOD reports. We could also incorporate non JDE access and processes. Now let's take a closer look at the process for creating SOD rules and running the reports. Remember, step one would be to define the critical process lists and SOD rules. Here we can see some critical process lists and SOD rules that were uploaded from the ALLOut SOD master. Using the predefined yet customizable SOD master data is not a requirement, but doing so enabled me to get a jumpstart on my SOD reporting process. Whether using SOD master data or not, lists and rules can always be modified here, and if you choose to incorporate non JDE processes, those processes can be associated with the SOD rules right here, using the same grid. Once the lists and rules have been defined, we can immediately run our reports. The interactive interface will walk us through the report settings. It can report access for users or roles. We can target a variety of data ranges and filter based on the level of access, including filters for mitigating controls and menu access. There are also options to define the output style and layout. Once everything is set, just submit the report. As with other JDE reports, I can find my report in my submitted jobs. The first page documents all of the report settings, and subsequent pages reveal the SOD breaching access. In this case, we're looking at one user at a time. For each user, the report documents each SOD rule that can be breached along with access details, including programs and the user's permissions to those programs. By changing the report style and layout, we can compare multiple users side by side and control the level of details shown on the report. For more detailed guidance on this and other ALLOut features, please visit the ALLOut Academy.
Close Popup

We use cookies to give you the best online experience. By agreeing you accept the use of cookies in accordance with our cookie policy. You can always revoke your consent by clicking on the icon at the bottom left of the screen.

Close Popup
Privacy Settings saved!
Privacy Settings

When you visit any web site, it may store or retrieve information on your browser, mostly in the form of cookies. Control your personal Cookie Services here.


ALLOut Security strictly necessary cookies
These are cookies that are required to enable you to browse our website and use its features, for example, to log into secure areas of our website.
  • mfn-builder
  • itsec_interstitial_browser
  • wam_assigned_roles[0]
  • wordpress_logged_in_
  • wordpress_sec_
  • wordpress_test_cookie
  • content_bypass_submissions_allout
  • mo_sp_1_issuer
  • mo_sp_1_sessionIndex
  • mo_sp_count
  • mo_idp_last_logged_in_user

Recaptcha
Google Recaptcha is a spam prevention system (Google Recaptcha) to ensure that our site is spam free. Read more here and here
  • _GRECAPTCHA
  • UULE
  • NID
  • CONSENT

Decline all Services
Save
Accept all Services
Open Privacy settings