Skip to end of metadata
Go to start of metadata


Date

 

Time11:30
Duration30 mts 
Location

Zoom

Zoom
Attendees
Project/ProgramSecurity Assessment remediation - SAR 
Project BoardITS PMO 
Log Time
OTL
Objective(s)
  • Implement SAR Remediations

Notes: 


Speaker DescriptionNotes
SAR SAR-92 Developers can connect directly to the iPaaS system without utilizing a jump box
  • What is the purpose of control? What risk is mitigated ? What's the Administrative Control?
  • The access to iPaaS, Developers, Architects and Patching are the ways to access the iPaaS system 
  • Developers can connect to iPaaS without utilizing jump box. Access of the developers is mitigated and controlled. The access through Jump box is unrestrictive
  • We need to have EA included in this meeting to review the purpose of the control and then come up with the process around. 

SAR-29 Review third party remote access to ensure access is still requiredThis task is in progress 
Write a comment...