cancel
Showing results for 
Search instead for 
Did you mean: 

Best Practice for HR Trigger - Termination

Former Member
0 Kudos

Hi,

We have implemented GRC solution and during the HR termination process we are not removing the roles, we just delimit the userid in the system. However this has created an issue that when we run GRC report "User to Role Relationship", the report shows the role assigned to all terminated users also. Is there any way to handle this scenario?

What are the best practices for Termination cases?

Please advise.

Thanks

Ravi

Accepted Solutions (0)

Answers (1)

Answers (1)

0 Kudos

Hi,

does anyone suggest the best practice here?

Regards,

jay

alessandr0
Active Contributor
0 Kudos

Dear both,

I dont have a solution to handle this in the report. I am handling this issue outside of GRC directly in Excel. I have a "negative list" with inactive users and filter them after exporting the report from GRC (can easily be done with a VLOOKUP in Excel).

I am aware that this is not the best solution, but at least it works.

Regards,

Alessandro

sandeep_devaki
Explorer
0 Kudos

Hi,

Create a new user group for the terminated users and assign the users to that user group . For example REMOVED user group. Now add the user group in the exclusion list of the violations and assign a Mitigating control which defines the purpose of it .

When you run User to role violation report those users will not be show since they are mitigated.

Hope this helps .

Regards,

Sandeep Devaki