Riordan Human Resources Roles

1012 Words5 Pages
Riordan Manufacturing Human resources Roles Earl Market CMGT 430 June 30, 2012 Ashiyan Ian Rahmani-Shirazi Riordan Manufacturing Human Resources Roles Access controls to information systems are easier and more efficient with the use of role based access controls. To aid Riordan Manufacturing in developing the Enterprise Role Based Access Control (ERBAC) schema for the human resources information systems (HRIS) a role graph has been created (Ferraiolo, Ahn, Chandramouli, & Gavrila, 2003) . Four primary roles for human resources (HR) for consideration include HR clerk, HR supervisor, HR Manager, and IT support staff. Roles for the HR department are in terms of requirement for access, restrictions, and policies of all types that…show more content…
The review of access control requirement for the HRIS is the scope of this discussion. Each role requires different access levels in the different areas of HR and the company. HR clerk requires read and write access to the database for personnel records in the office they reside in and clerks at Head Quarters will require read and write access throughout HR in the company. The HR department may have other resources that HR clerks will need only view access to as the manager or supervisor would control changes on that resource. HR supervisors will require the same level of access to the database for personnel records. Supervisors are required to correct errors of HR clerks as well as assist in personnel issues that escalate up to his or her level. HR may need read, and write access to resources that HR clerks only require read access to. Supervisors may beleive the requirement for full access to a resource, whereas full access is more convenient it is less secure as the supervisor may assign access to an individual and not a group. When temporary access is required to a resource a member of the IT support will grant the access. HR managers should only require read access to the database for personnel information. As a manager, he or she will require the ability to create and post department policies as well as update and share events required for the HR department. HR supervisors and…show more content…
A security document will state the schema for RBAC. RBAC section of the security document will have a section for HR and the need to protect sensitive information. Included in the section for sensitive information is the restrictions for the IT staff, use of ACL’s, VLANs, and list protected resources. There will be a section in the security document stating the restrictions to information systems (IS). Restrictions to IS include physical as well as network of LAN access. HR personnel will ensure that access to HR spaces is only by the personnel that requires the access. Security policies to protect sensitive information include the basic IT security practices such as unattended workstations locked, use of strong passwords, and many other

More about Riordan Human Resources Roles

Open Document