Choosing User to Risk Review Settings
After you enter the review details for the User to Risk type of review, set the rulebook(s), security extract, risk ratings, the changes to include based on a prior review, and the roles to exclude.
Note
This type of review can be performed by Risk Owners and Managers.
When specifying the review details, select User to Risk under Type of Review. This will change the available settings.
-
Select the rulebooks to include in the review. Risk Owners can review the list of users and the risk associated with their access to determine if that access should be retained.
Important
Associated risk is identified by determining if any of the transaction codes in the role are associated with access in a risk. This does not mean there is an inherent risk in the role.
-
Choose a security extract. You can select a previously completed security extract or a live security extract where a new security extract is pulled from SAP to run the analysis for the review.
Note
Previously completed extracts are sometimes used when completing a review for access at a certain point in time, even if that time has passed.
-
Select the risk rating(s) to include:
Refer to the User to Role type of review for information on completing this section.
Documentation Feedback
Feedback is provided as an informational resource only and does not form part of SailPoint’s official product documentation. SailPoint does not warrant or make any guarantees about the feedback (including without limitation as to its accuracy, relevance, or reliability). All feedback is subject to the terms set forth at https://developer.sailpoint.com/discuss/tos.