Mitigation controls for SoD
OpenIAM now supports the configuration of Mitigating Controls within Segregation of Duties (SoD). This feature allows administrators to define and manage controls that can mitigate risks associated with SoD policy violations.
What are mitigating controls?
Mitigating Controls are compensating measures that can reduce risk when a Segregation of Duties policy conflict occurs. Instead of strictly preventing conflicting access, organizations can acknowledge the conflict while implementing controls to monitor and mitigate the associated risks.
SoD policy integration
Mitigating Controls can now be associated with SoD policies:
- Multiple Control Selection: One or more mitigating controls can be assigned to a single SoD policy.
- Visual Indication: Selected controls are displayed in the policy configuration under "Mitigating Controls".
- Easy Management: Controls can be added to or removed from policies through a simple selection interface.
You can access the Mitigating Controls feature through Webconsole > Access Control > Segregation of Duties > Mitigating Controls tab. Here, you can:
- View the list of all configured mitigating controls.
- Search for specific controls.
- Create new controls using the "NEW CONTROL" button.
- Edit existing controls by clicking on them.
- Navigate to SoD policies to associate controls.