Create Global Risks

Global risks represent actions that users can do in one or more applications that an organization considers to be potentially risky.  As such, global risks map to the global functions defining the specific rights and roles that grant users the ability to perform those actions. A simple example of a global risk would be a risk named “Create Azure Groups” that is mapped to a global function named “Create Azure Groups.” When the risk engine compiles a global risk, it returns all users having the risk functions.

How to create a global risk

  1. On the navbar, expand Compliance and click Risk Management.

  2. On the Risk Management page, select the Global Risks tab and then click the Add button.

     

  3. Enter the following information in the dialog that appears:

    • Name — Enter a name for the risk that matches the global function the to which the risk applies. For example, if you have a function named Create Azure Groups and you are creating a global risk for that global function, a best practice would be to name the risk Create Azure Groups.

    • Display Name — Enter a display name for the risk. Display names are friendly names that appear in the user interface

    • Description — Enter a description for the risk

    • Risk Type — Select the type that best represents the category for the risk

      • Critical Access

      • Segregation of Duties

      • Sensitive Access

    • Risk Level — Select the level of risk

    • Location — Click the Select a Location link and then search for and select a creation location for the risk

    • Enabled — Select whether to enable to policy for compilation

    • Violation # Limit — Specify the the maximum number of violations that can occur

    • Locale Key (Unique Name) — Optionally, enter a locale key to create a localized entry for the risk

    • Locale Key for Description — Optionally, if you are creating a localized entry for the risk enter a description for the locale key

    • Job Schedule Interval — Select how often you want EmpowerID to compile the risk. The default interval is once every 24 hours.

  4. Click Save to create the global risk.

Next steps