Overview of the working copy
You can see the most important information about a working copy on the overview form.
To obtain an overview of a working copy
- Select the Identity Audit | Rules | Working copies of rules category.
- Select the rule in the result list.
- Select the Shelf overview task.
Assigning compliance frameworks
Use this task to specify which compliance frameworks are relevant for the selected rule. Compliance frameworks are used for classifying attestation policies, compliance rules, and company policies according to regulatory requirements.
To assign compliance frameworks to a rule
- Select the Identity Audit | Rules | Working copies of rules category.
- Select the working copy in the result list.
- Select the Assign compliance frameworks task.
- In the Add assignments pane, double-click on a compliance framework to assign it.
– OR –
In the Remove assignments pane, double-click on the compliance framework for which you want to delete the assignment.
- Save the changes.
Mitigating controls
Mitigating controls describe controls that are implemented if a compliance rule was violated. The next rule check should not find any rule violations once the controls have been applied.
To edit mitigating controls
- In the Designer, set the "QER | CalculateRiskIndex" configuration parameter.
Detailed information about this topic
Assigning mitigating controls
Specify which mitigating controls apply to the selected role.
To assign mitigating controls to a rule
- Select the Identity Audit | Rules | Working copies of rules category.
- Select the working copy in the result list.
- Select the Assign mitigating controls task.
- In the Add assignments pane, assign mitigating controls.
– OR –
In the Remove assignments pane, remove mitigating control assignments.
- Save the changes.
NOTE: Mitigating controls assigned to the SAP functions for testing are automatically transferred into compliance rules about SAP functions.
Prerequisites
- Active rules are assigned to a functional area and a department.
- The SAP functions for testing are assigned to the same functional area and then associated variable set of the same department.
For detailed information, see One Identity Manager Administration Guide for the SAP R/3 Compliance Add-on.