department-of-veterans-affairs / va.gov-team

Public resources for building on and in support of VA.gov. Visit complete Knowledge Hub:
https://depo-platform-documentation.scrollhelp.site/index.html
281 stars 197 forks source link

2024 Q3 Security Review June-Sept 2024: Test Rail #83685

Open jennb33 opened 3 months ago

jennb33 commented 3 months ago

Issue Description

OCTO-DE teams are responsible for periodically reviewing access to systems and applications they manage to ensure that only authorized personnel have the required access and permissions.

OCTO-DE teams periodically review user access to ensure that access is limited to users who currently need to access the systems and applications and that those users have the appropriate permissions.

Platform Security initiates each review cycle and application owners are responsible for executing the process for each application that they own. Once complete, application owners document the results of the access review and send the artifacts to Platform Security to document in eMASS as evidence.

Tasks

Success Metrics

Acceptance Criteria

Validation

Assignee to add steps to this section. List the actions that need to be taken to confirm this issue is complete. Include any necessary links or context. State the expected outcome.

jennb33 commented 3 months ago

@alyssagallion giving you this ticket, as an output of your discussion with @rmtolmach yesterday. Thanks so much! cc: @LindseySaari and Kelly Argynos for your information.

va-vsp-bot commented 2 weeks ago

This issue is stale. If it is no longer valid, please close issue. Otherwise please update

jennb33 commented 2 weeks ago

This ticket is now assigned to the Platform Support team.