To ensure that questions get required attention from community members and are NOT left unanswered, it’s important for the author to indicate (by selecting “Yes” or “No” when prompted) whether the question was answered. (newly added) Please note that it is also important to respond to EACH comment your question receives. Your Yes or No response ensures an accurate status for your question.
For more information, please refer to this announcement explaining best practices for getting answers to questions.
For more information, please refer to this announcement explaining best practices for getting answers to questions.
Risk Management and Compliance
Connect with experts and get answers to your questions
Discussion List
-
Unable to view Risk Management work areaHi, I am currently working with the Cybersecurity Incident functionality and trying to access the Risk Management tab. However, the tab is not visible in the application… -
Need clarification on the functionality and access enabled by the new privileges introduced in 26BSummary: As part of the Oracle Fusion Cloud 26B update, additional privileges related to Access Certification and Internal Control Certification campaigns have been intr… -
Is it required to run “Import User and Role Application Security Data” after role approval via AAR?Summary: Clarification on whether “Import User and Role Application Security Data” process is required after role approval via Advanced Access Request Content (please en… -
Deployed controls not appearing in OTBISummary: I have imported out of the box Access Controls and run them. I have got a bunch of incidents generated. But in OTBI nothing shows up Content (please ensure you … -
Privilege Usage Tracking and Transaction-Level Audit Reporting in Oracle FusionSummary: Hi Team, We have a requirement from the Business to understand whether Oracle Fusion supports tracking of privilege-level usage of a user specifically: Is there… -
User based Access CertificationSummary Hi, Is there a way to perform certification at a user level instead of a purely role based approach?Currently there are few challenges, During scoping/finalizati… -
developing AAC controls: how to filter on self-conflicting rolesI'm sure there is a fix for this and you've done it. in Access Control filters, I need the logic as with usual Reporting syntax to state; "exclude results where role nam… -
User remains in Security Assignment Group after temporary role revocation through AAR process.Summary: User remains associated with Security Assignment Groups even after temporary role revocation through Advanced Access Request (AAR) process and successful execut… -
User Role Usage Tracking in Oracle fusionHi, How can we check if a user has used the role assigned to them over last one year . Does Oracle store this level of information anywhere. Thanks -
Access Certification - Restrict certifier from certifying their own accessSummary: Hi Team, We are currently working in User Access certification. We have a requirement where the certifier should not be able to certify their own access, even i… -
RMC Does Not Return Some PermissionSetGrant/Revocation Events Found in Audit ReportSummary: The model object “Audit – Role Memberships and Access” is expected to return results based on Audit Report logs. However, we have observed that some events appe… -
Access Certification by Data AccessSummary: Hi, We have a requirement to perform user access certification based on data access (eg: Business unit) in Oracle Risk Management Cloud Scenario: The business w… -
when I am trying set up an OCI data source Risk Management to evaluate access data from Oracle CloudSummary: when I am trying set up an OCI data source Risk Management to evaluate access data from Oracle Cloud Infrastructure. I am getting an Error : Please try again an… -
"OCI External Access Synchronization" erroring when setting up 1st RCM user access certificationSummary: setting up 1st RCM user access certification and trying to configure non-fusion data source for OCI, believe I've done correctly and the connection is testing o… -
Roles, Data Access & SOD Rules DocumentationHi everyone, I’m currently looking for any documentation related to roles and data access, specifically for the following functional areas: Procure‑to‑Pay (P2P) Finance … -
Advanced Access Request Analysis Job Getting Cancelled with Server Shutdown Error (GTG-3660452)Summary: Advanced Access Request Analysis Job Getting Cancelled with Server Shutdown Error (GTG-3660452) Content (please ensure you mask any confidential information): A… -
41011 and 41012 Models are taking very long time to run and not generating any results.Summary: Hello, We are facing issue with below 2 models. When we are trying run the models post we imported the same from Oracle Library, these models are taking very lo… -
Getting error message in OTBI reports. View Display Error Exceeded configured maximum number of aSummary: I get error message when i am running reports using the Advanced Controle Subject Areas Content (please ensure you mask any confidential information): Attached … -
Risk Management Cloud PricingSummary: Whats the pricing impact of Risk Management cloud for an organization who is already having 10 Risk Management users, and when they wanted to use Advanced acces… -
Advanced Access Request - temporary and emergency access are often used interchangeably in practiceHi All, I am working on Oracle Fusion Cloud Risk Management – Advanced Access Requests (AAR) and would like to validate my understanding and clarify one scenario. Tempor… -
Oracle RMC - why do incidents that have been actioned show as 'Control Inactive'Incidents that are not set to closed status, their status changes to 'Control Inactive' when we inactivate a control. How can we retain the original status? -
SOD remediation automation in Advanced access controlSummary: Hi, We are currently implementing Advanced access control and had a question regarding SOD remediation. We understand that sod violations can be identified usin… -
Advanced Access Request Analysis job cancelled automaticallySummary: All Advanced Access Request Analysis jobs got cancelling automatically after couple of minits And this job is not triggering automatically when we submit the Ac… -
SOD historical trend analysisSummary: Hi, Customer is looking for Historical trend analysis. Can we see quarterly trends: did SOD violations increase or decrease? Which risk types grew fastest? Curr… -
Access Condition for Cross-Module SoD Rule (GL FA) – How to Define Common Data Security ContextSummary: Hi Experts, We have a requirement to define an SoD rule in AAC SOD : Enter Journals and Asset Depreciation For intra-module SoD (e.g., Create Invoice and Create… -
RMC - The job was canceled because the server was shut down. Reschedule the job. (GTG-3660452)Summary: Hi Team, We currently have the job Advanced Access Request Analysis scheduled to run every hour. Out of nowhere, the jobs started to get cancelled and when I cl… -
Advanced Access Request approved in Oracle Fusion, but incidents in Assigned instead of AcceptedSummary: In our environment, when an Advanced Access Request is raised for a role (with Business Unit) and approved by the approver, the expected behavior is that upon r… -
opt in Risk Mgmt pages states ENABLED yet we are, but we arent, are we?hi I need to check with you please, 'Prepare your environments' - - OPT IN RISK ENVIRONMENTS - https://docs.oracle.com/en/cloud/saas/risk-management-and-compliance/26a/f… -
Impact of Instance Refresh or Clone on SoD Rules/controls in Risk Management CloudSummary: Hi Experts, We are working on Advanced Access Controls (AAC) module and Advanced Access request. We would like to understand the impact of instance refresh/ clo… -
Oracle Advanced access control incident reportSummary: We need to share an Access control incident status report with the security admin team. could you please provide the latest report that includes: Remediation st…