Recertification policies are policies that you add to audits to generate recertification review tasks for the access assignments given to people, roles, groups and Query-Based collections. Once you create a Recertification policy, you then scope the policy by adding targets to it, such as a specific Business Role and Location or Group.

EmpowerID provides a number of Recertification policies that you can use out of the box. Each of theses policies creates snapshots of data for a particular resource type. You can use these policies as a starting point or create your own.

Create a Recertification Policy

  1. Log in to the EmpowerID Web application as an auditor or other person with the ability to configure audits.

  2. On the navbar, expand Compliance Management and click Audit Configuration.

  3. On the Actions tab, click Create Recertification Policy.


  4. In the Policy Details form that appears, click the Policy Type drop-down and select from the following options to create a snapshot of the policy type's data:

  5. Fill in the Name, Display Name and Description fields.

  6. Select Enabled to enable the policy.

  7. Click Save


After EmpowerID creates the policy, a Target grid appears on the Policy Details page. This grid allows you to add and remove Recertification targets to and from the policy. Recertification targets allow you to scope the Recertification policy to the specific IT objects you want to audit. They can include multiple EmpowerID Actor types, including individual resources, people, roles, locations, groups and Query-based Collections (SetGroups). This is demonstrated in the Adding Targets to Recertification Policies topic.



Next Steps

Add a target to the recertification policy

Create an audit

Add recertification policy to an audit