Give some examples for Remediation and Mitigation in RAR?
Answer Posted / ranjan dash
Remediate- after simulation of existing role or user , can know the risk., Avoid providing access with risk .
eg- employee cant have access to other employee's pay roll. access has been restricted to avoid risk.
Mitigate- after risk analysis for role assignment approver can approve access with risks existing via a mitigation control ID.
eg. if employee is a manager he ll have mitigated access to other employees i.e his team members payroll. access has been provided overcoming risk.
| Is This Answer Correct ? | 18 Yes | 1 No |
Post New Answer View All Answers
What are the upgrades happened in GRC 5.3 from GRC 5.2?
How we Educated client personnel in R/3 Security and general Basis knowledge
How to find out who has deleted users in the system?
Authorization check on s_btch_job failed. What would happen now?
User is not there in User master record. Then how to trace the user?
what is your ticketing tool? can we give some details about how we are getting tickets
Give an example of SOD with object level control & also decide the Risk implication from the Technical standpoint.
As a SAP security consultant what is the most challenged you faced in previous company?
Can you explain secure store and forward?
How to do SAP R/3 Security configuration, design, development, testing, implementation and production support.
When would you update a sap table directly? What precautions would you taje?
What does the account assessment category specify in a purchasing document in SAP Materials Management?
What does the account assessment category specify in a purchasing requisition in SAP Materials Management?
How to insert missing authorization?
What is the procedure for role modifications?