on 06-04-2013 10:53 AM
Hi,
We have implemented GRC solution and during the HR termination process we are not removing the roles, we just delimit the userid in the system. However this has created an issue that when we run GRC report "User to Role Relationship", the report shows the role assigned to all terminated users also. Is there any way to handle this scenario?
What are the best practices for Termination cases?
Please advise.
Thanks
Ravi
Hi,
does anyone suggest the best practice here?
Regards,
jay
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
Dear both,
I dont have a solution to handle this in the report. I am handling this issue outside of GRC directly in Excel. I have a "negative list" with inactive users and filter them after exporting the report from GRC (can easily be done with a VLOOKUP in Excel).
I am aware that this is not the best solution, but at least it works.
Regards,
Alessandro
Hi,
Create a new user group for the terminated users and assign the users to that user group . For example REMOVED user group. Now add the user group in the exclusion list of the violations and assign a Mitigating control which defines the purpose of it .
When you run User to role violation report those users will not be show since they are mitigated.
Hope this helps .
Regards,
Sandeep Devaki
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.