cancel
Showing results for 
Search instead for 
Did you mean: 

Routing Rule (S.o.D's / Sensitive Role)

Former Member
0 Kudos

Hello Experts,

We plan to use a pretty standard work flow with 3 stages.
Manager -> Role Owner - > Compliance.

 

But we have some tricky requirements and am trying to look for suggestion on how to handle then:

 

  1. If the manager is the requestor – Skip Stage and
    Auto approve
  2. If roles selected are sensitive route to Role
    Owner (stage specific)
  3. If S.o.D’s are present route to compliance Stage
    (regardless if sensitive or not)

We plan to execute risk analysis upon request submission. So
I am wondering where and if I should use the standard S.o.D detour? Normally I
would use it at the role owner stage but it will only go there if the roles are
sensitive. Also, if the manager is the requestor we are hoping to skip that stage
so I don’t think I can set it there. Therefore it appears I would almost need
to somehow route it in the initiator?

 

Any suggestions would be appreciated.

 

Thanks,

 

Kyle 

Accepted Solutions (0)

Answers (2)

Answers (2)

Former Member
0 Kudos

Hey Sachin,

Thanks for the response.

Point # 1 if there is an S.o.D upon request or at any stage we always want to route to the compliance stage for mitigation.

Point # 2 Standard Path is – Manager -> Role Owner - > Compliance. The thought is that if a role is sensitive it would route to the Role owner if not then skip that stage. Also noted above if there is an S.o.D on the request or any at any stage route to the compliance stage.

Thanks,

Kyle

Former Member
0 Kudos

Hi Kyle,

So you need to start with Initiator then you have to check for SoD & Then based on SoD checking Result the request moves either Auto Approve or Next Stage For Mitigation.

Please let me know any other things you required.

Happy Designing.

Former Member
0 Kudos

Hi Kyle,

For Point 1: If there is an SoD then also you wants to Skip Stage and Auto approve ?

For Point 2: What are the Sensitive Routes? Have you already defined?

For Point 3: That's a good idea

Its Fine to execute risk analysis upon request submission.

You can use at Role Owner Stage but again its dependent upon your design because how about Sensitive Roles?

Best of Luck.