Administering Cloud EPM: The Platform Beneath the Business Processes · Module 9 · Securing the Perimeter
Approving access requests
Lesson 104 of 201 · 10 min
Receive an access request, review what is being requested and why, approve it, show the time-bounded nature of the approval, show the audit record, and show declining a request. THE APPROVER NEEDS ENOUGH CONTEXT TO MAKE A REAL DECISION. Rubber-stamping every request makes the control theatre. Train whoever holds the role — and note that the person who approves is usually not the person who configured this. The audit record is the evidence for the requirement that drove the control. Retain it.
The full lesson is part of the course
The video, the complete written lesson and the module quiz are included in Administering Cloud EPM: The Platform Beneath the Business Processes, with a certificate on completion and a fourteen-day refund window.
In this module: Module 9 · Securing the Perimeter
- 1Defence in depth for an EPM estate
- 2Network perimeter
- 3Migrating from per-environment IP allowlists
- 4Sign-on policies
- 5Break Glass: managed provider access
- 6Approving access requests
- 7Customer-managed keys: the concepts
- 8Configuring customer-managed keys
- 9Compliance reports and the security capability set
- 10Answering a security questionnaireFree preview
- 11What breaks
- 12Lab: proportionate security, and ten questionnaire answers
