Download PDF
Fastpath > Case Studies > Start Up Real Estate Management Company Builds SOX Compliant and Scalable D365FO Security Framework in Expedited Timeframe
Fastpath Logo

Start Up Real Estate Management Company Builds SOX Compliant and Scalable D365FO Security Framework in Expedited Timeframe

Technology Category
  • Analytics & Modeling - Process Analytics
  • Application Infrastructure & Middleware - API Integration & Management
Applicable Functions
  • Business Operation
Use Cases
  • Cybersecurity
  • Regulatory Compliance Monitoring
Services
  • System Integration
  • Training
The Challenge
The customer, a rapidly growing real estate management company, was relying on the standard security roles delivered with the application ‘out of the box’ which inherently contained critical and high-risk segregation of duties (SoD) conflicts. Due to the amount of revenue under management for a large public real estate investment trust (REIT), they soon needed to comply with Sarbanes-Oxley (SOX) and external audit requirements, including controls over security access in D365FO. They needed to quickly find a solution that would integrate well within their D365FO environment and provide detailed audit reporting, SoD visibility, and scalable task-based roles for future growth.
About The Customer
The customer is a national manager of distinctive, independent assisted living and memory care communities throughout the U.S. Established less than two years ago, the company has grown to manage more than 100 retirement communities caring for more than 5,500 residents across 28 states. To accommodate the company’s rapid growth, the organization implemented Dynamics 365 for Finance and Operations (D365FO) on an accelerated timeline to rapidly establish a business management platform. However, this forced the team to rely only on the standard security roles delivered with the application ‘out of the box’ which inherently contained critical and high-risk segregation of duties (SoD) conflicts.
The Solution
The customer acquired Fastpath Assure® and asked for implementation partners that could support them and solve their problem within the timeframe allotted. They reached out to Protiviti, a global consulting and internal audit firm, to assist with the Fastpath implementation, the security redesign build process, and establishment of governance processes to protect their new security architecture. A SoD risk framework had to be established and configured within the Fastpath software. The framework provided the rules for how the new roles can be built. Once the ruleset was configured within Fastpath Assure, the team used the solution to help build security roles that aligned and complied with the SoD framework, designed processes for managing their new risk framework, and implemented the new roles throughout the organization.
Operational Impact
  • Rapidly created task-based roles to ensure appropriate access and proper control throughout D365FO.
  • Improved visibility into SoD conflicts and made it easier to remediate issues.
  • Made all roles free of critical SoD conflicts.
Quantitative Benefit
  • Reduced the total number of conflicts at the user level by over 97%.
  • Reduced the number of non-system users who are assigned the System Administrator role from 10 users to 4.

Related Case Studies.

Contact us

Let's talk!

* Required
* Required
* Required
* Invalid email address
By submitting this form, you agree that IoT ONE may contact you with insights and marketing messaging.
No thanks, I don't want to receive any marketing emails from IoT ONE.
Submit

Thank you for your message!
We will contact you soon.