SecurID® Governance & Lifecycle Blog

Subscribe to the official SecurID Governance & Lifecycle community blog for information about new product features, industry insights, best practices, and more.

Alternate Reviewers

VenkataRamana
Moderator Moderator
Moderator
2 9 2,261
9 Comments
CliveMorrish
Moderator Moderator
Moderator

Good video!

 

I wish I'd see this yesterday when I was asked for details on Alternate manager configuration.

 

It's a shame the review results aren't updated to reflect the changes as this makes pre checks before sending out a review more involved. Also, I was a little surprised that the review would appear for both the original and alternate managers view.

VenkataRamana
Moderator Moderator
Moderator

Hi Clive, Thanks for the comments.. Agree that it would be lot helpful to display alternate reviewer information in the result.

I guess you have asked for alternate manager configuration through some other means and not on this forum as i have not found anything here. If there is still any help we could provide, please let know. Thanks.

CliveMorrish
Moderator Moderator
Moderator

Thank you.

 

The customer has a requirement to redirect certain reviews away from senior/executive members of staff as they shouldn't be receiving them. I thought the Alternate Manager route would offer a quick solution, but based on the findings that the review will go to both new and old reviewers, this won't suit.

 

I'm thinking either delegation or coverage file may be better.

VenkataRamana
Moderator Moderator
Moderator

Yes. Alternate reviewer currently only acts as an additional reviewer. Original reviewers will still be able to act on the review.

 

If the reviewers are getting assigned through default options (like Supervisor or business unit owner or app owner for example), reassignment of items immediately after review generation (before it is made active) is an option to achieve that like you mentioned. The alternate reviewers can optionally be specified through coverage files and the items can be removed from senior staff immediately after review generation (unassignment instead of reassignment in this case)

 

If the review was getting assigned to senior staff through coverage files, simply altering the coverage files should achieve the required reviewer changes.

StevenPapaleo1
Beginner
Beginner

Hi Clive,

 

I have used the following approach to your scenario. We had 20 executives that shouldn't need to complete the review:

 

  1. Make sure that the review is set up as initially being on hold

  2. When creating the user access review define monitors/owners as having the ability to re-assign review items and the ability to delegate review items

  3. Initiate the review so it goes into an on hold status
  4. As the owner of the review, or as a monitor, re-assign the actions for the relevant executives to other nominated users

  5. Validate that the review has been updated

  6. Change the status of the review from on hold to active.

 

I did it this way to ensure that the executives got no emails related to the review, and the on hold status helps you achieve that.

CliveMorrish
Moderator Moderator
Moderator

Thanks Steve, after a bit of playing around with configuration I also opted for this approach.

ArmelLupapi1
Beginner
Beginner

This is the best approach, which I have been using in my organization for almost a two years.

It's allow to prevent the VIP users to receive notifications and reviews without even changing/customizing any users filed or alt. manager.

ArmelLupapi1
Beginner
Beginner

Since the alternate manager is not shown in the review result definition details, will he receive the emails once the review is active or should he simply assume that he can log and perform the review?

SandeepSharma
Beginner
Beginner

Hi Steve,

 

Steps 2 and 4, the "owner" refers to the review owner right?

 

I assigned a review owner for user access review and configured the review as per step 2 i.e. When creating the user access review define monitors/owners as having the ability to re-assign review items and the ability to delegate review items.

 

However, when I ran the review (default status Hold), and logged into IMG as review owner, the 'Reassign' option/ button is not available!

 

Is there anything additional which needs to be configured for the review and/ or the review owner?

 

Thanks!