Access Review helps companies stay compliant

We are happy to release the Access Review feature to the Squarum platform. Our targets were clear when we started the planning; keep it simple and avoid unnecessary features and processes.
UAR compliant

What are Access Reviews?

To put it simple: Access reviews make sure the right people have the right access level to applications.

 

Background

Companies have to meet the requirements of regulatory standards and compliance frameworks like GDPR, ISO27001, PCI DSS and HIPAA. Regulations may require periodic access reviews to assess who have access, to which systems, and the level of access. In Squarum we approached the problem by talking to our customers, walking through the current processes and tools together. We talked about the key challenges, identified the goods, the bads and the uglies of the current approaches to User Access Reviews, and came up with a functional, efficient and easy-to-use formula. Our access reviews are easy of use, with a simple but powerful user interface for both administrators and reviewers.

 

The simple steps of an Access Review

  1. Start by registering to Squarum if you haven’t done so already.
  2. Choose the app to be reviewed and add the users.
  3. Create a new review for the selected app, configure the app owner and ensure the app owner set up the access review successfully (users and reviewers).
  4. Activate the Access Review. The reviewers gets an email with a link to the Squarum Reviewer Portal. The Squarum Reviewer Portal is used to review and approve or revoke the access.
  5. Reviewers log in to the Portal using Microsoft SSO or a one-time password. When the reviewer is finished with reviewing all users assigned to him/her, the reviewer separately confirms that the review is ready.
  6. When all reviewers have completed their user reviews, the Access Review is automatically set to Finished.
  7. When the Access Review is in Finished state, the admin can take the actions required to close the Access Review.
  8. When Closing the Access Review, a PDF-file is generated and attached automatically on the Access Review page.