QS0032-02: Separation of Duties Policy Flashcards
QS0032-01: Separation of Duties Policy
Which departments are considered for short-term rotation during employee absence?
DevOps Administrators
Client application support
QS0032-01: Separation of Duties Policy
Which control mechanism should be used to prevent an individual from accessing data that is not necessary to perform an assigned function?
Access control
QS0032-01: Separation of Duties Policy
What should be established to ensure verification of activity or quality of work?
Workflows
QS0032-01: Separation of Duties Policy
Suppose duties cannot be separated or subdivided. What action should be taken?
Implement compensating rules to mitigate associated business risk as agreed to by the application and systems owner.