Segregation of Duties compliance check

  • Segregation of Duties compliance check

    Posted by Mark Jones on August 25, 2021 at 4:42 pm
    • Mark Jones

      Member

      August 25, 2021 at 4:42 PM

      We are on AX 2012 R3 cu12.Ā  I am setting up Segregation of Duties for the first time and testing.Ā  I read these two pages: Identify and resolve conflicts in segregation of duties and Set up segregation of duties , but don’t see the answer I am hoping for.

      Because of the way that security was set up prior to my arrival, one AX function may exist in three different duties that we want to segregate from another function that exists in five duties.Ā  So I am having to set up 15 different rules to address what should have been only two duties and one rule, had it been set up in a more logical fashion.Ā  I don’t have time at the moment to unwind all of that yet.

      1. Is there a way to validate all SoD rules at once to find conflicts between roles?Ā  The Microsoft docs above that I read seem to point to having to click on each rule, one at a time, to run the duties and roles validation.
      2. Is there a way to set this up once in a lower environment and move it to the higher environments without having to re-key the rules from scratch?Ā Ā 

      I appreciate your help.

      Screen shot of SoD rules so far.

      ——————————
      Mark Jones
      Project Manager
      UniGroup, C.A.
      Fenton, MO
      ——————————

    • Alex Meyer

      Member

      October 22, 2021 at 11:24 AM

      Mark,

      1) To validate all SOD rules at once you can run the ‘Verify compliance of user-role assignments with rules for segregation of duties’ process located at System Administration -> Setup -> Segregation of duties -> Verify compliance of user-role assignments. This runs as a batch job and will output the results to the Segregation of duties unresolved conflicts area located in the same module.


      2) As far as migrating this data from one environment to another the only option I know of would be to use the DIXF feature to export the data from one environment and import it to another. Depending on the number of records you are moving this may be more of a hassle than just re-entering the data but that is a business decision to make.

      Also one last thing is to understand that there are gaps in the way that Microsoft has implemented SOD within AX 2012 and D365FO. Depending on your audit requirements this may be an issue you have to address. I have written about these gaps here:

      https://www.gofastpath.com/blog/fastpath-vs-dynamics-ax-d365fo-segregation-of-duty-analysis-comparison

      ——————————
      Alex Meyer
      Director of Microsoft Software Development
      Fastpath
      Des Moines, IA
      ——————————
      ——————————————-

    Mark Jones replied 4 years, 7 months ago 1 Member · 0 Replies
  • 0 Replies

Sorry, there were no replies found.

The discussion ‘Segregation of Duties compliance check’ is closed to new replies.

Start of Discussion
0 of 0 replies June 2018
Now

Welcome to our new site!

Here you will find a wealth of information created for peopleĀ  that are on a mission to redefine business models with cloud techinologies, AI, automation, low code / no code applications, data, security & more to compete in the Acceleration Economy!