Administering Cloud EPM: The Platform Beneath the Business Processes · Module 9 · Securing the Perimeter
Lab: proportionate security, and ten questionnaire answers
Lesson 110 of 201 · 3 min
Northwind, with a regulator involved. Northwind's second-country subsidiary is regulated. Its regulator requires that the organization can demonstrate control over who accesses its data — including third-party personnel — and that data is encrypted with keys the organization controls. Group legal has confirmed both requirements in writing. Northwind's own security policy requires that the estate be reachable only from the corporate network and from a defined set of approved remote locations. Two awkward facts. The finance team includes three people who work from a country office with a DYNAMIC address range. Nightly automation runs from a scheduled server in the corporate data centre. A monthly data load runs from a CONSULTANT'S LAPTOP. And internal audit has sent a forty-question security questionnaire, due in two weeks. Seven deliverables. A written security design PROPORTIONATE to the stated requirements, distinguishing what is required from what is optional. A network perimeter design including every…
The full lesson is part of the course
The video, the complete written lesson and the module quiz are included in Administering Cloud EPM: The Platform Beneath the Business Processes, with a certificate on completion and a fourteen-day refund window.
In this module: Module 9 · Securing the Perimeter
- 1Defence in depth for an EPM estate
- 2Network perimeter
- 3Migrating from per-environment IP allowlists
- 4Sign-on policies
- 5Break Glass: managed provider access
- 6Approving access requests
- 7Customer-managed keys: the concepts
- 8Configuring customer-managed keys
- 9Compliance reports and the security capability set
- 10Answering a security questionnaireFree preview
- 11What breaks
- 12Lab: proportionate security, and ten questionnaire answers
