From the course: ISC2 Certified Secure Software Lifecycle Professional (CSSLP) (2023) Cert Prep
Unlock the full course today
Join today to access over 24,700 courses taught by industry experts.
Separation of duties
From the course: ISC2 Certified Secure Software Lifecycle Professional (CSSLP) (2023) Cert Prep
Separation of duties
- [Instructor] As organizations grow in size, they often grow in complexity as well. This complexity is particularly evident when it comes to the applications your users rely on and their access within those apps. As it becomes more difficult to determine who has access to what, it becomes that much harder to determine whether your users have access that they shouldn't. That access comes with risks that could be mitigated before anything bad happens. You can get ahead of those risks though if you understand segregation of duties. When you implement segregation of duties controls, you split up sensitive functions so that no one person can do too much. Segregation of duties or SOD controls offer you a simple but effective way to prevent users from committing fraud. It's generally accepted that people need three things to commit fraud. They need a motive, like the need to pay their bills. They need a mindset that lets them justify their actions and they need the opportunity, which often…
Download courses and learn on the go
Watch courses on your mobile device without an internet connection. Download courses using your iOS or Android LinkedIn Learning app.
Contents
-
-
(Locked)
Secure architecture and design patterns3m 43s
-
(Locked)
Identifying and prioritizing controls6m 15s
-
(Locked)
Traditional application architectures7m 23s
-
(Locked)
Pervasive and ubiquitous computing6m 43s
-
(Locked)
Rich internet and mobile applications7m 9s
-
(Locked)
Cloud architectures7m 8s
-
(Locked)
Embedded system considerations8m 45s
-
(Locked)
Architectural risk assessments6m 59s
-
(Locked)
Component-based systems5m 2s
-
(Locked)
Security enhancing tools4m 8s
-
(Locked)
Cognitive computing4m 37s
-
(Locked)
Control systems8m 34s
-
(Locked)
-
-
(Locked)
Components of a secure environment8m 25s
-
(Locked)
Designing network and server controls4m 22s
-
(Locked)
Designing data controls6m 25s
-
(Locked)
Secure design principles and patterns5m 6s
-
(Locked)
Secure interface design6m 49s
-
(Locked)
Security architecture and design review3m 6s
-
(Locked)
Secure operational architecture3m 37s
-
(Locked)