cancel
Showing results for 
Search instead for 
Did you mean: 

Standard risk descriptions / examples

Former Member
0 Kudos

Hi,

is there a more detailed risk description available? It would be helpful to understand the delivered risks, if there is more detailed description or better examples?!

Do you know any helpful documents or links?

Thanks!!

Regards,

Christian

Accepted Solutions (0)

Answers (2)

Answers (2)

Former Member
0 Kudos

What you get in the ruleset files is it. There is no more explanation.

The supplied ruleset is there only for you to use as a starting point, if you do not understand a risk or a risk does not make any sense to you, I would suggest that you remove it or disable it.

After all you should validate that every risk supplied actually applies to your company otherwise you are going to be generating reports against roles where the risk is not valid, thus causing extra work to resolve non-existent issues and ultimately making the user population question the value of the product.

Additionally you will need to add in extra rules to cover your custom transations and any other potential issues that are unique to your business processes.

regards

Simon

Former Member
0 Kudos

This seems to still be unanswered. I would be very interested also... Is there anyone out there that has documented the risks with "real" examples?

Thanks,

Ken